Ticket #74 (closed enhancement: fixed)

Opened 3 years ago

Last modified 2 years ago

Read access on slave assets

Reported by: Michiel.Schok Owned by: robert
Priority: major Milestone: MediaMosa 1.7
Component: Core Version: 1.7.0
Keywords: Cc: Michiel.Schok@…
MoSCoW: Estimated time after impact analysis:
Related to project: none Tested:
Accepted: yes Estimated Hours:

Description

A [get] mediafile/{id}/acl call for a slaved asset fails.

I think it's fair to have 'read permission' on the ACL that's set for a slave record.
If any other datafields are 'forbidden' to read as 'app_admin' in a master/slave situation, I think they need an update too.

[post] calls may fail obviously.

Change History

Changed 3 years ago by Frans

  • component set to Core
  • milestone changed from MediaMosa X.X to MediaMosa 1.7

Changed 2 years ago by MC-arjen

  • owner set to robert
  • status changed from new to assigned
  • related_to set to none

review request

Changed 2 years ago by robert

  • status changed from assigned to closed
  • resolution set to ready for review

Changed 2 years ago by robert

  • status changed from closed to reopened
  • resolution ready_for_review deleted

Changed 2 years ago by robert

  • status changed from reopened to closed
  • resolution set to fixed

Changed 2 years ago by Frans

  • version set to 1.7.0

Changed 2 years ago by Michiel.Schok

  • accepted changed from no to yes

Allright.
From app-id 5 I did an acl call on an app-id 3 mediafile:

<?xml version="1.0"?>
<response>
  <header>
    <item_count>6</item_count>
    <request_process_time>0.0166</request_process_time>
    <request_query_count>18</request_query_count>
    <request_result>success</request_result>
    <request_result_description></request_result_description>
    <request_result_id>601</request_result_id>
    <request_uri>[GET] mediafile/aW7CK8uHSCtfSSuLerHoigvz/acl?user_id=nibg-admin</request_uri>
    <vpx_version>1.7.0</vpx_version>
  </header>
  <items>
    <item id="1">
      <aut_realm>@teleblik.nl</aut_realm>
    </item>
    <item id="2">
      <aut_realm>@ACADEMIA.group</aut_realm>
    </item>
    <item id="3">
      <aut_domain>ACADEMIA.group</aut_domain>
    </item>
    <item id="4">
      <aut_app>4</aut_app>
    </item>
    <item id="5">
      <aut_app>5</aut_app>
    </item>
    <item id="6">
      <aut_app>104</aut_app>
    </item>
  </items>
</response>

Tested and accepted.

Note: See TracTickets for help on using tickets.