[Koha-bugs] [Bug 14868] REST API: Swagger2-driven permission checking
bugzilla-daemon at bugs.koha-community.org
bugzilla-daemon at bugs.koha-community.org
Tue Sep 22 11:03:18 CEST 2015
http://bugs.koha-community.org/bugzilla3/show_bug.cgi?id=14868
--- Comment #1 from Julian Maurice <julian.maurice at biblibre.com> ---
Created attachment 42761
-->
http://bugs.koha-community.org/bugzilla3/attachment.cgi?id=42761&action=edit
Bug 14868: Swagger2-driven Permission checking
A hasty downgrade from 13920, utilizing new features implemented by the
Mojolicious::Plugin::Swagger2-author, to make it possible to implement more
complex authentication/authorization scenarios with the Plugin.
Define 'x-koha-permission' for the Swagger2 Operation Object, to automatically
authorize against the required permissions.
This way we immediately tell the API consumer in the Swagger2-definition, which
permissions are needed to access defined resources.
Also we don't need to maintain permissions in multiple locations and we can
build
a smart testing framework to help a lot in creating tests for the new REST API.
--
You are receiving this mail because:
You are watching all bug changes.
More information about the Koha-bugs
mailing list