Uploaded image for project: 'Help-Desk'
  1. Help-Desk
  2. HELP-8510

[fiware-askbot] How to control access to Orion using oauth 2.0?

    Details

      Description

      Created question in FIWARE Q/A platform on 09-04-2017 at 09:04
      Please, ANSWER this question AT https://ask.fiware.org/question/784/how-to-control-access-to-orion-using-oauth-20/

      Question:
      How to control access to Orion using oauth 2.0?

      Description:
      Hi.

      I can access the entity named 'TestRoom' in Orion using request like 'http://localhost:1026/v2/entities/TestRoom' without any access restrictions.
      So, I just want to make constraint to access Test_Room using OAuth2.0 token.

      But now I don't know how to make access token scope to entity in Orion.
      For example, I want to make the user or the app that has access token(scope:read temperature from TestRoom) can read temperature information from TestRoom.

      If I know above thing, I will make the request access token(scope:read info. from Test_Room) and use that token with X-Auth-Token header.

      So Could you get me any information, URL or document?
      I already read RFC 6749 and some documents of FIWARE Security GE, and installed orion, keyrock and authzforce.
      And I was not install the Willma(PEP) because Tour-Guide App provided FIWARE doesn't use this GE.
      (I don't know why, as you know, PEP is entry point of all FIWARE security right?)

        Activity

        Transition Time In Source Status Execution Times Last Executer Last Execution Date
        Open Open In Progress In Progress
        253d 1h 52m 1 Backlog Manager 18/Dec/17 3:56 PM
        In Progress In Progress Answered Answered
        1h 1 Backlog Manager 18/Dec/17 4:56 PM
        Answered Answered Closed Closed
        24d 15h 38m 1 Fernando Lopez 12/Jan/18 8:35 AM
        fla Fernando Lopez made changes -
        Fix Version/s 2021 [ 12600 ]
        fla Fernando Lopez made changes -
        Resolution Done [ 10000 ]
        Status Answered [ 10104 ] Closed [ 6 ]
        fla Fernando Lopez made changes -
        Assignee Fermín Galán [ fermin ] Jose Manuel Cantera [ jmcantera ]
        Hide
        backlogmanager Backlog Manager added a comment -

        2017-12-18 17:05|UPDATED status: transition Answered| # answers= 1, accepted answer= False

        Show
        backlogmanager Backlog Manager added a comment - 2017-12-18 17:05|UPDATED status: transition Answered| # answers= 1, accepted answer= False
        backlogmanager Backlog Manager made changes -
        Status In Progress [ 3 ] Answered [ 10104 ]
        Hide
        backlogmanager Backlog Manager added a comment -

        2017-12-18 16:05|UPDATED status: transition Answer| # answers= 1, accepted answer= False

        Show
        backlogmanager Backlog Manager added a comment - 2017-12-18 16:05|UPDATED status: transition Answer| # answers= 1, accepted answer= False
        backlogmanager Backlog Manager made changes -
        Status Open [ 1 ] In Progress [ 3 ]
        fla Fernando Lopez made changes -
        HD-Enabler Orion [ 10875 ]
        Description
        Created question in FIWARE Q/A platform on 09-04-2017 at 09:04
        {color: red}Please, ANSWER this question AT{color} https://ask.fiware.org/question/784/how-to-control-access-to-orion-using-oauth-20/


        +Question:+
        How to control access to Orion using oauth 2.0?

        +Description:+
        Hi.

        I can access the entity named 'TestRoom' in Orion using request like 'http://localhost:1026/v2/entities/TestRoom' without any access restrictions.
        So, I just want to make constraint to access Test_Room using OAuth2.0 token.

        But now I don't know how to make access token scope to entity in Orion.
        For example, I want to make the user or the app that has access token(scope:read temperature from TestRoom) can read temperature information from TestRoom.

        If I know above thing, I will make the request access token(scope:read info. from Test_Room) and use that token with X-Auth-Token header.

        So Could you get me any information, URL or document?
        I already read RFC 6749 and some documents of FIWARE Security GE, and installed orion, keyrock and authzforce.
        And I was not install the Willma(PEP) because Tour-Guide App provided FIWARE doesn't use this GE.
        (I don't know why, as you know, PEP is entry point of all FIWARE security right?)
        Created question in FIWARE Q/A platform on 09-04-2017 at 09:04
        {color: red}Please, ANSWER this question AT{color} https://ask.fiware.org/question/784/how-to-control-access-to-orion-using-oauth-20/


        +Question:+
        How to control access to Orion using oauth 2.0?

        +Description:+
        Hi.

        I can access the entity named 'TestRoom' in Orion using request like 'http://localhost:1026/v2/entities/TestRoom' without any access restrictions.
        So, I just want to make constraint to access Test_Room using OAuth2.0 token.

        But now I don't know how to make access token scope to entity in Orion.
        For example, I want to make the user or the app that has access token(scope:read temperature from TestRoom) can read temperature information from TestRoom.

        If I know above thing, I will make the request access token(scope:read info. from Test_Room) and use that token with X-Auth-Token header.

        So Could you get me any information, URL or document?
        I already read RFC 6749 and some documents of FIWARE Security GE, and installed orion, keyrock and authzforce.
        And I was not install the Willma(PEP) because Tour-Guide App provided FIWARE doesn't use this GE.
        (I don't know why, as you know, PEP is entry point of all FIWARE security right?)
        HD-Chapter Data [ 10838 ]
        fla Fernando Lopez made changes -
        Component/s FIWARE-TECH-HELP [ 10278 ]
        fla Fernando Lopez made changes -
        Field Original Value New Value
        Assignee Fermín Galán [ fermin ]
        Hide
        backlogmanager Backlog Manager added a comment -

        2017-04-09 15:05|CREATED monitor | # answers= 0, accepted answer= False

        Show
        backlogmanager Backlog Manager added a comment - 2017-04-09 15:05|CREATED monitor | # answers= 0, accepted answer= False
        backlogmanager Backlog Manager created issue -

          People

          • Assignee:
            jmcantera Jose Manuel Cantera
            Reporter:
            backlogmanager Backlog Manager
          • Votes:
            0 Vote for this issue
            Watchers:
            1 Start watching this issue

            Dates

            • Created:
              Updated:
              Resolved: