Uploaded image for project: 'Help-Desk'
  1. Help-Desk
  2. HELP-8510

[fiware-askbot] How to control access to Orion using oauth 2.0?

    Details

      Description

      Created question in FIWARE Q/A platform on 09-04-2017 at 09:04
      Please, ANSWER this question AT https://ask.fiware.org/question/784/how-to-control-access-to-orion-using-oauth-20/

      Question:
      How to control access to Orion using oauth 2.0?

      Description:
      Hi.

      I can access the entity named 'TestRoom' in Orion using request like 'http://localhost:1026/v2/entities/TestRoom' without any access restrictions.
      So, I just want to make constraint to access Test_Room using OAuth2.0 token.

      But now I don't know how to make access token scope to entity in Orion.
      For example, I want to make the user or the app that has access token(scope:read temperature from TestRoom) can read temperature information from TestRoom.

      If I know above thing, I will make the request access token(scope:read info. from Test_Room) and use that token with X-Auth-Token header.

      So Could you get me any information, URL or document?
      I already read RFC 6749 and some documents of FIWARE Security GE, and installed orion, keyrock and authzforce.
      And I was not install the Willma(PEP) because Tour-Guide App provided FIWARE doesn't use this GE.
      (I don't know why, as you know, PEP is entry point of all FIWARE security right?)

        Activity

        fla Fernando Lopez made changes -
        Fix Version/s 2021 [ 12600 ]
        fla Fernando Lopez made changes -
        Resolution Done [ 10000 ]
        Status Answered [ 10104 ] Closed [ 6 ]
        fla Fernando Lopez made changes -
        Assignee Fermín Galán [ fermin ] Jose Manuel Cantera [ jmcantera ]
        backlogmanager Backlog Manager made changes -
        Status In Progress [ 3 ] Answered [ 10104 ]
        backlogmanager Backlog Manager made changes -
        Status Open [ 1 ] In Progress [ 3 ]
        fla Fernando Lopez made changes -
        HD-Enabler Orion [ 10875 ]
        Description
        Created question in FIWARE Q/A platform on 09-04-2017 at 09:04
        {color: red}Please, ANSWER this question AT{color} https://ask.fiware.org/question/784/how-to-control-access-to-orion-using-oauth-20/


        +Question:+
        How to control access to Orion using oauth 2.0?

        +Description:+
        Hi.

        I can access the entity named 'TestRoom' in Orion using request like 'http://localhost:1026/v2/entities/TestRoom' without any access restrictions.
        So, I just want to make constraint to access Test_Room using OAuth2.0 token.

        But now I don't know how to make access token scope to entity in Orion.
        For example, I want to make the user or the app that has access token(scope:read temperature from TestRoom) can read temperature information from TestRoom.

        If I know above thing, I will make the request access token(scope:read info. from Test_Room) and use that token with X-Auth-Token header.

        So Could you get me any information, URL or document?
        I already read RFC 6749 and some documents of FIWARE Security GE, and installed orion, keyrock and authzforce.
        And I was not install the Willma(PEP) because Tour-Guide App provided FIWARE doesn't use this GE.
        (I don't know why, as you know, PEP is entry point of all FIWARE security right?)
        Created question in FIWARE Q/A platform on 09-04-2017 at 09:04
        {color: red}Please, ANSWER this question AT{color} https://ask.fiware.org/question/784/how-to-control-access-to-orion-using-oauth-20/


        +Question:+
        How to control access to Orion using oauth 2.0?

        +Description:+
        Hi.

        I can access the entity named 'TestRoom' in Orion using request like 'http://localhost:1026/v2/entities/TestRoom' without any access restrictions.
        So, I just want to make constraint to access Test_Room using OAuth2.0 token.

        But now I don't know how to make access token scope to entity in Orion.
        For example, I want to make the user or the app that has access token(scope:read temperature from TestRoom) can read temperature information from TestRoom.

        If I know above thing, I will make the request access token(scope:read info. from Test_Room) and use that token with X-Auth-Token header.

        So Could you get me any information, URL or document?
        I already read RFC 6749 and some documents of FIWARE Security GE, and installed orion, keyrock and authzforce.
        And I was not install the Willma(PEP) because Tour-Guide App provided FIWARE doesn't use this GE.
        (I don't know why, as you know, PEP is entry point of all FIWARE security right?)
        HD-Chapter Data [ 10838 ]
        fla Fernando Lopez made changes -
        Component/s FIWARE-TECH-HELP [ 10278 ]
        fla Fernando Lopez made changes -
        Field Original Value New Value
        Assignee Fermín Galán [ fermin ]
        backlogmanager Backlog Manager created issue -

          People

          • Assignee:
            jmcantera Jose Manuel Cantera
            Reporter:
            backlogmanager Backlog Manager
          • Votes:
            0 Vote for this issue
            Watchers:
            1 Start watching this issue

            Dates

            • Created:
              Updated:
              Resolved: