Task #1467
Story #725: Create Authentication and Access control design specifications
Complete d1_schema changes for Authz and Authn.
30%
History
#1 Updated by Matthew Jones over 13 years ago
- Status changed from New to In Progress
#2 Updated by Matthew Jones over 13 years ago
- Category set to Documentation
- Milestone set to 2011-Block-2
Added new types for Authz and Authn, including AuthToken, AuthSession, Challenge, EncryptedNonce, X509Certificate, Person, Group, Principal, PrincipalList, and others.
Need to review these types with Dave and get feedback. If no comments, then can close this task.
#3 Updated by Dave Vieglais over 13 years ago
Only question is on Types.Permission. The interpretation of a permission is "Permissions are cumulative, in that higher level permissions include all of the priveledges of lower levels (e.g., given write access, one also implicitly has read access)."
This means that execute access implies WRITE and CHANGEPERMISSION access which seems a bit liberal.
#4 Updated by Matthew Jones over 13 years ago
Its supposed to be the other way around, in that CHANGEPERMISSION implies WRITE. I'll fix that.
#5 Updated by Dave Vieglais about 12 years ago
- Target version changed from Sprint-2012.37-Block.5.3 to Sprint-2012.41-Block.6.1
#6 Updated by Dave Vieglais about 12 years ago
- Target version changed from Sprint-2012.41-Block.6.1 to Sprint-2012.46-Block.6.3
#7 Updated by Chris Jones almost 12 years ago
- Target version changed from Sprint-2012.46-Block.6.3 to Sprint-2012.50-Block.6.4
#8 Updated by Chris Jones almost 12 years ago
- Target version changed from Sprint-2012.50-Block.6.4 to 2013.2-Block.1.1
#9 Updated by Chris Jones over 11 years ago
- Target version changed from 2013.2-Block.1.1 to 2013.10-Block.2.1
#10 Updated by Dave Vieglais over 11 years ago
- Target version changed from 2013.10-Block.2.1 to 2013.33-Block.4.4
#11 Updated by Chris Jones almost 11 years ago
- Target version changed from 2013.33-Block.4.4 to 2014.2-Block.1.1
#12 Updated by Chris Jones over 10 years ago
- Target version deleted (
2014.2-Block.1.1)
#13 Updated by Dave Vieglais about 10 years ago
- Target version set to Maintenance Backlog