Details
-
Type:
Story
-
Status: Done
-
Resolution: Done
-
Fix Version/s: None
-
Component/s: Stack Documentation and UX
-
Labels:
-
Story Points:2.2
-
Epic Link:
-
Team:SQuaRE
Description
The initial MVP of ltd-keeper had all-or-nothing authentication; any user was effectively an admin user. It would be useful have fine grained roles that each API user could have (for example, one API user might be able to add a build, but not create an edition or product or add another user). The phases of this ticket at:
1. Design a set of roles that cover current functionality
2. Add these roles to the User DB model and user creation API
3. Authorize users against these roles in specific API calls
Attachments
Issue Links
Activity
Field | Original Value | New Value |
---|---|---|
Epic Link |
|
Labels | lsst-the-docs |
Status | To Do [ 10001 ] | In Progress [ 3 ] |
Story Points | 0.8 |
Story Points | 0.8 | 1.2 |
Story Points | 1.2 | 1.3 |
Story Points | 1.3 | 2 |
Reviewers | J Matt Peterson [ jmatt ] | |
Status | In Progress [ 3 ] | In Review [ 10004 ] |
Status | In Review [ 10004 ] | In Review [ 10004 ] |
Status | In Review [ 10004 ] | Reviewed [ 10101 ] |
Story Points | 2 | 2.2 |
Resolution | Done [ 10000 ] | |
Status | Reviewed [ 10101 ] | Done [ 10002 ] |