[Fiware-tech-help] [FIWARE-JIRA] (HELP-6964) FIWARE.Request.Tech.Security.AuthorizationPDP.Securing verbs via the PEP proxy

Fernando Lopez (JIRA) jira-help-desk at jira.fiware.org
Tue Sep 24 09:47:00 CEST 2019


    [ https://jira.fiware.org/browse/HELP-6964?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=55375#comment-55375 ] 

Fernando Lopez edited comment on HELP-6964 at 9/24/19 8:46 AM:
---------------------------------------------------------------

Comment by aalonsog at dit.upm.es : 

Hi, 

last thing I requested in the ticket was the output of the Horizon logs to see what is happening. You need first to configure DEBUG mode in Horizon log settings.



was (Author: fw.external.urser):
Comment by aalonsog at dit.upm.es : 

Hi, 

last thing I requested in the ticket was the output of the Horizon logs to see what is happening. You need first to configure DEBUG mode in Horizon log settings
--
Álvaro

> El 16 sept 2016, a las 16:17, Simon Vos <s.vos at itude.com> escribió:
> 
> Dear Technlogy employee,
> 
> We are in the process to make the FInish contextbroker more secure. Thus by using the current available technology of FInish.
> However the communication seems to fail with Support. We send all information asked and our ticket HELP-6964 is suddenly closed.
> The current path is long and time consuming for everyone involved.
> Could you help us here to find the right channels  to support, so we are able to finalize the last bits of code here ?
> 
> Kind Regards,
> 
> 
> Simon Vos
> 
> 
> <PastedGraphic-2.png>  
> Arthur van Schendelstraat 650
> 3511 MJ Utrecht   
> ■ mob +31(0) 6 21 49 93 82
> ■ tel receptie +31(0)30 699 70 20
> ■ mail s.vos at itude.com <mailto:s.vos at itude.com>
> ■ linkedIn linkedin.com/in/simonvos <https://linkedin.com/in/simonvos>
> 
> 
> www.itude.com <http://www.itude.com/> ■ K.v.K. 30146090
> _____________________________________________________________________________
> ***Op deze mail is een disclaimer van toepassing. De inhoud daarvan is te lezen op onze website***
> 
>> Begin doorgestuurd bericht:
>> 
>> Van: Help-Desk <jira-help-desk at fi-ware.org <mailto:jira-help-desk at fi-ware.org>>
>> Onderwerp: [FIWARE-JIRA] (HELP-6964) [Fiware-tech-help] Securing verbs via the PEP proxy
>> Datum: 31 augustus 2016 10:24:00 CEST
>> Aan: c.meijer at itude.com <mailto:c.meijer at itude.com>, aalonsog at dit.upm.es <mailto:aalonsog at dit.upm.es>, k.patenaude at itude.com <mailto:k.patenaude at itude.com>, c.houtman at itude.com <mailto:c.houtman at itude.com>, e.bon at itude.com <mailto:e.bon at itude.com>
>> Kopie: s.vos at itude.com <mailto:s.vos at itude.com>, c.meijer at itude.com <mailto:c.meijer at itude.com>, aalonsog at dit.upm.es <mailto:aalonsog at dit.upm.es>, babbler at itude.com <mailto:babbler at itude.com>, k.patenaude at itude.com <mailto:k.patenaude at itude.com>, c.houtman at itude.com <mailto:c.houtman at itude.com>, e.bon at itude.com <mailto:e.bon at itude.com>
>> Antwoord aan: jira-help-desk at fi-ware.org <mailto:jira-help-desk at fi-ware.org>
>> 
>> 
>> 
>



> FIWARE.Request.Tech.Security.AuthorizationPDP.Securing verbs via the PEP proxy
> ------------------------------------------------------------------------------
>
>                 Key: HELP-6964
>                 URL: https://jira.fiware.org/browse/HELP-6964
>             Project: Help-Desk
>          Issue Type: extRequest
>          Components: FIWARE-TECH-HELP
>            Reporter: FW External User
>            Assignee: Alvaro Alonso
>         Attachments: 2016-09-05 08_57_48.486 21 INFO eventlet.wsgi.txt, Logs IDM_Horizon after creating permission_HTTP.txt rule in IDM, ParseError at _idm_myApplications_fdae7d987c6a435188a2200e31cac4db_edit_roles_.html
>
>
> Hello,
> We would like to secure out ContextBroker so POSTS are allowed, but a
> DELETE isn't. We've asked you about this and you've said we should do the
> following:
> * You can configure as many PEPs as you want. You have only to modify the
> > listening port.
> > * You can configure an AuthZForce in
> > https://github.com/ging/horizon/blob/master/openstack_dashboard/local/local_settings.py.example#L629.
> > You only need to configure the URL in which it is listening
> > * To configure PEP to work with AuthZForce you have to use the Level 2 of
> > security. Here you will find tutorials about this:
> > https://edu.fiware.org/course/view.php?id=131
> We've tried this, but we've had the following problems:
>    - If we pull the docker image of
>    fiware/authzforce-ce-server:release-5.4.0 or release-5.3.0a, the image
>    starts, but shuts down after a few seconds after which the logs state that
>    tomcat 7 can't be started.
>    - When we run fiware/authzforce-ce-server:release-4.4.1b, we get a
>    tomcat with no webapp in the webapps directory other than the default
>    stuff.
>    - Performing a manual installation using this guide
>    <http://authzforce-ce-fiware.readthedocs.io/en/release-5.3.0a/InstallationAndAdministrationGuide.html#installation>
> will
>    have the same result.
> In your previous mail, it is stated that we need AuthZForce. However,
> Keypass seems to do something similar. Can you explain the difference?
> Can you help us with this?



--
This message was sent by Atlassian JIRA
(v6.4.1#64016)


More information about the Fiware-tech-help mailing list

You can get more information about our cookies and privacy policies clicking on the following links: Privacy policy   Cookies policy