Uploaded image for project: 'Help-Desk'
  1. Help-Desk
  2. HELP-6392

FIWARE.Question.Tech.Security.AuthorizationPDP.AuthZForce Security Level 2: Basic Authorization error "AZF domain not created for application"

    Details

    • Type: Monitor
    • Status: Closed
    • Priority: Major
    • Resolution: Done
    • Affects Version/s: None
    • Fix Version/s: 2021
    • Component/s: FIWARE-TECH-HELP
    • Labels:

      Description

      Created question in FIWARE Q/A platform on 13-04-2016 at 20:04
      Please, ANSWER this question AT http://stackoverflow.com/questions/36606813/authzforce-security-level-2-basic-authorization-error-azf-domain-not-created-f

      Question:
      AuthZForce Security Level 2: Basic Authorization error "AZF domain not created for application"

      Description:
      We are trying to deploy our security layer (KeyRock, Wilma, AuthZForce) to protect our Orion instance.

      We are able to have security level 1 (authentication) with Keyrock and Wilma working, but when we try to insert AuthZForce to check the verb+resource authorization we get the error message:

      AZF domain not created for application

      In the PEP Proxy User Guide, under "Level 2: Basic Authorization" section, it is stated that we have to configure the roles and permissions for the user in the application. I have created my user and registered my application following the steps on the Fiware IdM User and Programmers Guide. I also created an additional rule to match exactly the resource that I'm trying to GET to guarantee that there is no path mistake.

      I am also able to create domains as stated in the AuthZForce - Installation and Administration Guide but I don't know how to bind the Domain ID with user roles when creating them. I've searched in the IdM GUI and in the documentation but I couldn't find how to do it.

      So, how can I insert users/organizations/applications under a specific domain, and then have the security level 2?

        Activity

        backlogmanager Backlog Manager created issue -
        Hide
        backlogmanager Backlog Manager added a comment -

        2016-04-15 12:05|CREATED monitor | # answers= 0, accepted answer= False

        Show
        backlogmanager Backlog Manager added a comment - 2016-04-15 12:05|CREATED monitor | # answers= 0, accepted answer= False
        backlogmanager Backlog Manager made changes -
        Field Original Value New Value
        Component/s FIWARE-TECH-HELP [ 10278 ]
        backlogmanager Backlog Manager made changes -
        HD-Enabler Unknown [ 10910 ]
        HD-Chapter Unknown [ 10845 ]
        HD-Node Unknown [ 10852 ]
        mev Manuel Escriche made changes -
        HD-Enabler Unknown [ 10910 ] AuthZForce [ 10887 ]
        backlogmanager Backlog Manager made changes -
        HD-Chapter Unknown [ 10845 ] Security [ 10841 ]
        backlogmanager Backlog Manager made changes -
        Assignee Cyril Dangerville [ cyril.dangerville ]
        cdangerville Cyril Dangerville made changes -
        Status Open [ 1 ] In Progress [ 3 ]
        Hide
        cdangerville Cyril Dangerville added a comment -

        Asked for more info on stackoverflow

        Show
        cdangerville Cyril Dangerville added a comment - Asked for more info on stackoverflow
        backlogmanager Backlog Manager made changes -
        Status In Progress [ 3 ] Answered [ 10104 ]
        Hide
        backlogmanager Backlog Manager added a comment -

        2016-04-18 12:05|UPDATED status: transition Answered| # answers= 1, accepted answer= False

        Show
        backlogmanager Backlog Manager added a comment - 2016-04-18 12:05|UPDATED status: transition Answered| # answers= 1, accepted answer= False
        cdangerville Cyril Dangerville made changes -
        Assignee Cyril Dangerville [ cyril.dangerville ] Alvaro Alonso [ aalonsog ]
        cdangerville Cyril Dangerville made changes -
        Resolution Done [ 10000 ]
        Status Answered [ 10104 ] Closed [ 6 ]
        Hide
        cdangerville Cyril Dangerville added a comment -

        Answered by PEP owner, Alvaro Alonso.

        Show
        cdangerville Cyril Dangerville added a comment - Answered by PEP owner, Alvaro Alonso.
        backlogmanager Backlog Manager made changes -
        Summary [fiware-stackoverflow] AuthZForce Security Level 2: Basic Authorization error "AZF domain not created for application" FIWARE.Question.Tech.Security.AuthorizationPDP.AuthZForce Security Level 2: Basic Authorization error "AZF domain not created for application"
        HD-Node Unknown [ 10852 ]
        fla Fernando Lopez made changes -
        Fix Version/s 2021 [ 12600 ]
        Transition Time In Source Status Execution Times Last Executer Last Execution Date
        Open Open In Progress In Progress
        2d 22h 43m 1 Cyril Dangerville 18/Apr/16 10:46 AM
        In Progress In Progress Answered Answered
        1h 16m 1 Backlog Manager 18/Apr/16 12:02 PM
        Answered Answered Closed Closed
        22h 8m 1 Cyril Dangerville 19/Apr/16 10:10 AM

          People

          • Assignee:
            aalonsog Alvaro Alonso
            Reporter:
            backlogmanager Backlog Manager
          • Votes:
            0 Vote for this issue
            Watchers:
            2 Start watching this issue

            Dates

            • Created:
              Updated:
              Resolved: