[AAA-180] MDSAL-Based Dynamic Authorization no longer works Created: 07/Sep/18 Updated: 15/Feb/20 Resolved: 15/Feb/20 |
|
| Status: | Resolved |
| Project: | aaa |
| Component/s: | General |
| Affects Version/s: | Oxygen |
| Fix Version/s: | Magnesium, Sodium SR3 |
| Type: | Bug | Priority: | Medium |
| Reporter: | Richard Kosegi | Assignee: | Venkatrangan Govindarajan |
| Resolution: | Done | Votes: | 0 |
| Labels: | None | ||
| Remaining Estimate: | Not Specified | ||
| Time Spent: | Not Specified | ||
| Original Estimate: | Not Specified | ||
| Description |
|
Following scenario used to work fine in Oxygen-SR1 according to https://docs.opendaylight.org/en/stable-oxygen/user-guide/authentication-and-authorization-services.html#mdsal-based-dynamic-authorization : 1, create 2 users (user-ro, user-full) 2, create 2 roles (role-ro, role-full) 3, assign roles accordingly to users (role-ro => user-ro, role-full => user-full) 4, configure policy: {{{}} 5, This used to return 401 in Oxygen-SR1, now it returns 200 curl -u user-ro:123456 -v -X DELETE http://localhost:8181/restconf/config/network-topology:network-topology/topology/topology1 |