Look into authorization consistency
Nessuno ha ancora preso questa issue.
Valutazione
- Difficoltà
- 5/5
- Tempo stimato
- Più di una settimana
- Idoneità per principianti
- 30/100
- Tipo di issue
- Refactoring
- Chiarezza
- Da chiarire
- Stato di attività
- Attiva
- Stack tecnologico
- typescript
- Ambito
- authentication, authorization, backend
Direzione di ricerca
Review the three authorization paths described in the issue and the overlapping access scenario in pull request #101. Compare PAT, client-claim, and OIDC-header authentication across the server interactions. Done means the overlap has a documented, agreed-upon authorization approach rather than an unresolved investigation.
Scritto dal modello di indicizzazione a partire dal testo della issue.
Descrizione
There are multiple authorization paths in the server.
- RS <-> AS interactions where a PAT is required, following the UMA specification.
- Client claims during a token request.
- Other client interactions outside of the specifications, such as policy management and access requests. This uses standard OIDC headers.
The problem is if some of these overlap, which happened in https://github.com/SolidLabResearch/user-managed-access/pull/101, where the client wanted to access the list of registered resources. The current solution is to allow both the PAT flow, and standard client OIDC authentication, but it should be investigated if these can be more aligned since in the end both use OIDC tokens, but slightly differently.
- Lingua principale
- TypeScript
- Stelle
- 9
- Fork
- 4
- Merge medio
- 4g 21h
- PR unite (30g)
- 3
Guida per i contributori
Nessuna guida per i contributori indicizzata per questo repository
Come iniziare
- Leggi tutta la issue e poi la guida ai contributi del progetto.
- Commenta sulla issue per dire che te ne occupi tu — evita che due persone facciano lo stesso lavoro.
- Fai un fork del repository e lavora su un branch.
- Apri una pull request che faccia riferimento al numero della issue.
Altre issue di SolidLabResearch/user-managed-access
-
Difficoltà 5/5 Più di una settimana Idoneità per principianti 25/100
-
Difficoltà 3/5 1-2 giorni Idoneità per principianti 52/100
SolidLabResearch/user-managed-access#87 · 1 commento ·
-
Difficoltà 4/5 3-5 giorni Idoneità per principianti 30/100
-
research UCP UMA
SolidLabResearch/user-managed-access#27 · 1 assegnatario ·
-
research UCP UMA
SolidLabResearch/user-managed-access#26 · 1 assegnatario ·
Tutte le issue di SolidLabResearch/user-managed-access
Issue simili
-
Difficoltà 2/5 1-3 ore Idoneità per principianti 84/100
copse-dev/agent-pane#2953 ·
-
Difficoltà 2/5 1-3 ore Idoneità per principianti 84/100
Eynzof/Hermes-CN-Desktop#610 ·
-
[Bug]: Matrix progress drafts fail with "Matrix runtime not initialized" during tool activity Apertabug clawsweeper:linked-pr-open clawsweeper:needs-live-repro clawsweeper:no-new-fix-pr impact:message-loss issue-rating: 🐚 platinum hermit P2 regression
Difficoltà 2/5 1-3 ore Idoneità per principianti 78/100
-
enhancement
Difficoltà 2/5 1-3 ore Idoneità per principianti 68/100
-
calcite-components needs triage refactor
Difficoltà 2/5 1-3 ore Idoneità per principianti 75/100
Esri/calcite-design-system#15203 ·