BReg acceptance: statistics profiles admit any token of the project
Los mantenedores suelen responder en 1 día
Nadie ha tomado este issue todavía.
Evaluación
- Dificultad
- 2/5
- Tiempo estimado
- 1-3 horas
- Aptitud para principiantes
- 78/100
- Tipo de issue
- Error
- Claridad
- Bien especificado
- Estado de actividad
- Activo
- Stack tecnológico
- rust
- Área
- authorization
Línea de trabajo
Comienza en products/breg/acceptance/facility/registry.yaml: compara los perfiles statistics-publisher y statistics-reader con otros perfiles que declaren requiredScopes/requiredPurposes. Revisa dev-clients.yaml para ver los scopes ya concedidos (registry:facility:statistics:publish / :read) y docs/site/src/content/docs/configure/breg-access.mdx para la semántica de admisión. Se considera terminado cuando bregctl check deje de emitir access.profile.no_required_scope para estos perfiles y las pruebas de statistics junto con el script del workflow sigan pasando con los dev-client scopes existentes.
Escrito por el modelo de indexación a partir del texto del issue.
Descripción
In products/breg/acceptance/facility/registry.yaml, statistics-publisher and statistics-reader declare only principalClaim: registry_principal: no requiredScopes and no requiredPurposes. Every other profile in the project uses the same principal claim, and a request is admitted against whichever profile the application selects (docs/site/src/content/docs/configure/breg-access.mdx, "One profile per request"). So a token issued for any task in this project can select statistics-publisher.
statistics-publisher lists and counts permits and discharge reports in every district (rowBoundaries: [], allowCount: true), filterable by permit type, validity dates, boundary and the derived flags. That is required for it to publish releases, but it means any caller with a token for this registry can obtain exact counts, including the small cells a release suppresses (1 to 4) and rounds.
The intent looks clear from dev-clients.yaml, which gives the publisher client registry:facility:statistics:publish and the reader client registry:facility:statistics:read; the profiles never require those scopes. bregctl check already warns (access.profile.no_required_scope: "any authenticated" caller), but the acceptance project is the example adopters copy for statistics.
Expected. Both statistics profiles require their scope (and the project's purpose if that fits), and the statistics tests and workflow script keep passing with the dev clients' existing scopes.
- Lenguaje dominante
- Rust
- Estrellas
- 2
- Forks
- 0
- Merge medio
- 8 h 50 min
- PR fusionados (30 d)
- 258
Preparar el entorno
Primeros pasos
- Lee el issue completo y luego la guía de contribución del proyecto.
- Comenta en el issue que vas a ocuparte — evita que dos personas hagan lo mismo.
- Haz un fork del repositorio y trabaja en una rama.
- Abre un pull request que haga referencia al número del issue.
Más de registrystack/registry-stack
-
area:casework bug criticality:p2 rust
Dificultad 2/5 1-3 horas Aptitud para principiantes 78/100
registrystack/registry-stack#1936 ·
Los mantenedores suelen responder en 1 día
-
area:casework bug criticality:p3 rust
Dificultad 2/5 1-3 horas Aptitud para principiantes 85/100
registrystack/registry-stack#1934 ·
Los mantenedores suelen responder en 1 día
-
area:release area:scheduling bug criticality:p3 triage:needs-implementation
Dificultad 2/5 1-3 horas Aptitud para principiantes 68/100
registrystack/registry-stack#1909 ·
Los mantenedores suelen responder en 1 día
-
area:release bug
Dificultad 2/5 1-3 horas Aptitud para principiantes 86/100
registrystack/registry-stack#1874 ·
Los mantenedores suelen responder en 1 día
-
area:breg bug criticality:p3
Dificultad 2/5 1-3 horas Aptitud para principiantes 88/100
registrystack/registry-stack#1851 ·
Los mantenedores suelen responder en 1 día
Todos los issues de registrystack/registry-stack
Issues similares
-
Dificultad 2/5 1-3 horas Aptitud para principiantes 82/100
Los mantenedores suelen responder en 1 día
-
Dificultad 2/5 1-3 horas Aptitud para principiantes 82/100
bmander/geomsolver#118 ·
Los mantenedores suelen responder en 1 día
-
Dificultad 2/5 1-3 horas Aptitud para principiantes 68/100
Los mantenedores suelen responder en 1 día
-
Three Windows builds are keyed on a later release than their layoutPosiblemente ocupada @ero-qt la tomó hoy. Abierto
Dificultad 2/5 1-3 horas Aptitud para principiantes 78/100
Los mantenedores suelen responder en 2 días
-
priority:P3 type:docs
Dificultad 2/5 1-3 horas Aptitud para principiantes 85/100
sebastian-software/ferroni#253 ·
Los mantenedores suelen responder en 1 día