Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

...

Role org.onap.aai.traversal_readonly
Permission typeinstancesaction
org.onap.aai.traversal??????

Resources webservice AAF role and permission setup

Code Block
languagebash
themeMidnight
titleAAF role permission setup
role create org.onap.aai.resources_all
perm create org.onap.aai.resources * get org.onap.aai.resources_all
perm create org.onap.aai.resources * put org.onap.aai.resources_all
perm create org.onap.aai.resources * post org.onap.aai.resources_all
perm create org.onap.aai.resources * patch org.onap.aai.resources_all
perm create org.onap.aai.resources * delete org.onap.aai.resources_all
user role add demo@people.osaaf.org org.onap.aai.resources_all
role create org.onap.aai.resources_readonly
perm create org.onap.aai.resources * get org.onap.aai.resources_readonly



Open questions

  1. How do we enable AAF since it has to have a connection to the windriver lab? Or we enable it only in special deployments?
  2. What are the variable configuration parameters of AAF? - the certificate, AAF server IP, permission names?
  3. Who creates the roles and permissions during the new release, who and how maintains these scripts?