Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

...

The user presents their credentials for authentication
If the credentials are valid
1.The user is given access to the catalog
2.As defined by their role(s)
3.As defined by their access rights
4.As defined by the access type: CRUD, discover
5. As defined by the pre-defined filter
For example if they issue a get on a catalog that a party has no access they get an error response
Or if they try to modify an area of the catalog but do not have Write Access they get an error response
Normally we anticipate that the OAUTH2 or Open ID Connect are used as the authorization APIs and that ACL are establisher between authorized parties with regards to the content of the Catalog (i.e GET but also enable of update operations on specific entities).

Anchor
_Toc203490686
_Toc203490686
Anchor
_Toc225613461
_Toc225613461
Anchor
_Toc225603250
_Toc225603250
Anchor
_Toc235288526
_Toc235288526
Anchor
_Toc405197224
_Toc405197224
Release History

Release Number

Date

Release led by:

Description

Release 1.0

04/15/2013

Pierre Gauthier
TM Forum
[email protected]

First Release of Draft Version of the Document.

Release 1.1

 

 

Updated for use in the Paris Spec Jam – and rebranded.

 

© TM Forum 2015. All Rights Reserved.