Uploaded image for project: 'OpenIDM'
  1. OpenIDM
  2. OPENIDM-14448

Remove schema resource collection dependency from DAF privilege visitation

    Details

    • Type: Story
    • Status: Closed
    • Priority: Major
    • Resolution: Done
    • Affects Version/s: 7.0.0
    • Fix Version/s: 7.0.0
    • Component/s: None
    • Labels:

      Description

      Since query and read are only allowed on edge requests for Delegated Admin, dependency on inspecting privileges for all schema resource collections of the edge field should be removed. This is occurring for invocations made to: PrivilegeVisitor#getListOfMatchingPrivilegesForEdgeResources

      The JDBC layer is responsible for filtering by privilege by resource path. resource collections are not required in the schema config, therefore continuing to depend on them could possibly return an invalid unauthorized response if 1+ resource collections were not in the schema.

        Attachments

          Activity

            People

            • Assignee:
              katie.gonzalez Katie Gonzalez
              Reporter:
              katie.gonzalez Katie Gonzalez
            • Votes:
              0 Vote for this issue
              Watchers:
              2 Start watching this issue

              Dates

              • Created:
                Updated:
                Resolved: