Uploaded image for project: 'Configuration Persistence Service'
  1. Configuration Persistence Service
  2. CPS-2126

Enable HTTP Authorization Bearer Token to enable Audit Logging

XMLWordPrintable

    • Icon: Bug Bug
    • Resolution: Done
    • Icon: Highest Highest
    • New Delhi Release
    • New Delhi Release
    • NCMP
    • None

      Problem: CPS/NCMP requires HTTP Basic Auth only. This prevents HTTP Bearer Token from passed in, which in turn can affect audit logging in user's environment, as the Bearer Token contains user auth info, which is discarded.

      • Allow NCMP (cps-application) to accept HTTP Bearer Token
        • Disabling HTTP Basic Auth is an option
      • Propagate Authorization header from NCMP passthrough operations to DMI
      • May need to come up with solution for CM handle registration / Module Sync (need confirmation if this is required)
      • Testing:
        • Manual testing with Postman to confirm Bear Token is passed from NCMP to DMI is good
        • Automated integration can be done after release, to prevent regressions

            danielhanrahan Daniel Hanrahan
            danielhanrahan Daniel Hanrahan
            Votes:
            0 Vote for this issue
            Watchers:
            2 Start watching this issue

              Created:
              Updated:
              Resolved: