Story #8025
Review authorization requirements for all DataONE API methods
Status:
Rejected
Priority:
Normal
Assignee:
-
Category:
Authentication, Authorization
Target version:
Start date:
2017-02-20
Due date:
% Done:
0%
Story Points:
Sprint:
Description
In order to ensure reliable access control to read and alter content it is prudent to periodically review implementations to ensure consistency with design criteria.
The goal of this story is to review CN implementation of all services to ensure access control is implemented as expected. The areas to be covered include:
- synchronization (new and altered content)
- reading system metadata and content
- access to index entries
- replication
Related issues
History
#1 Updated by Dave Vieglais almost 8 years ago
- Related to Bug #8024: Submitter Being Checked During SeriesId Validation within V2TransferObjectTask added
#2 Updated by Dave Vieglais almost 7 years ago
- Status changed from New to Rejected