[Backlogmanager] [FIWARE-JIRA] (HELP-13321) [fiware-stackoverflow] How to properly configure IoT sensors in order to gain authentication and authorization using IdM Keyrock and Wilma PEP Proxy

Fernando Lopez (JIRA) jira-help-desk at jira.fiware.org
Tue Jan 16 16:40:00 CET 2018


     [ https://jira.fiware.org/browse/HELP-13321?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ]

Fernando Lopez reassigned HELP-13321:
-------------------------------------

    Assignee: Alvaro Alonso

> [fiware-stackoverflow] How to properly configure IoT sensors in order to gain authentication and authorization using IdM Keyrock and Wilma PEP Proxy
> ----------------------------------------------------------------------------------------------------------------------------------------------------
>
>                 Key: HELP-13321
>                 URL: https://jira.fiware.org/browse/HELP-13321
>             Project: Help-Desk
>          Issue Type: Monitor
>          Components: FIWARE-TECH-HELP
>            Reporter: Backlog Manager
>            Assignee: Alvaro Alonso
>              Labels: fiware, fiware-orion, fiware-wilma, identity-management, proxy
>
> Created question in FIWARE Q/A platform on 17-07-2017 at 15:07
> {color: red}Please, ANSWER this question AT{color} https://stackoverflow.com/questions/45146101/how-to-properly-configure-iot-sensors-in-order-to-gain-authentication-and-author
> +Question:+
> How to properly configure IoT sensors in order to gain authentication and authorization using IdM Keyrock and Wilma PEP Proxy
> +Description:+
> I have being working for some weeks with the IdM Keyrock, Wilma PEP Proxy and AuthZForce in the context of Fiware Platform, in order to develop an IoT application.
> I had success in protecting the Orion Context Broker APIs using Wilma PEP Proxy and now is the turn to protect IoT-UL APIs in order to secure "southbound" APIs.
> I thought about using a similar strategy to that followed with the Orion Context Broker. In this case each sensor has an OAUth2 token and putting a PEP Proxy in front of the IoT-UL APIs I would be able to authenticate and authorize every request to them. 
> Then I noticed that into the Keyrock interface, there is a section inside my Application tab where I can register IoT Sensors so I registered a few IoT sensors. Then I realized that I could not assign roles to this users (because internally they are users) and I could neither login using keyrock interface. So I Could not assign roles and neither  generate OAuth2 tokens.
> What am I missing? Perhaps authentication and authorization is not yet available for IoT sensors. In that case I thought about using regular users to represent IoT sensors but I think that is overkill. Any help with this would be very usefull. 



--
This message was sent by Atlassian JIRA
(v6.4.1#64016)


More information about the Backlogmanager mailing list

You can get more information about our cookies and privacy policies clicking on the following links: Privacy policy   Cookies policy