Project

General

Profile

Story #8025

Review authorization requirements for all DataONE API methods

Added by Dave Vieglais about 7 years ago. Updated about 6 years ago.

Status:
Rejected
Priority:
Normal
Assignee:
-
Category:
Authentication, Authorization
Target version:
Start date:
2017-02-20
Due date:
% Done:

0%

Story Points:
Sprint:

Description

In order to ensure reliable access control to read and alter content it is prudent to periodically review implementations to ensure consistency with design criteria.

The goal of this story is to review CN implementation of all services to ensure access control is implemented as expected. The areas to be covered include:

  • synchronization (new and altered content)
  • reading system metadata and content
  • access to index entries
  • replication

Related issues

Related to Infrastructure - Bug #8024: Submitter Being Checked During SeriesId Validation within V2TransferObjectTask Rejected 2017-02-20

History

#1 Updated by Dave Vieglais about 7 years ago

  • Related to Bug #8024: Submitter Being Checked During SeriesId Validation within V2TransferObjectTask added

#2 Updated by Dave Vieglais about 6 years ago

  • Status changed from New to Rejected

Also available in: Atom PDF

Add picture from clipboard (Maximum size: 14.8 MB)