3a.6.1 - Ensure RBAC compliance
Description
Simpl shall provide an API that:
- given an authenticated credential of a data space participant end user checks if the end user has a given role (or a set of roles).
- given an authenticated credential of a data space participant end user, returns the set of roles assigned to the user.
- given an authenticated credential of a data space participant end user and a requested Agent functionality (e.g. web API endpoint, UI page, ...) checks if the end user has the authorisation to access the functionality based upon its assigned roles.
L2 - Detailed Requirement | Issue ID: SIMPL-1744 | Status: Proposed |
Please log in or sign up to comment.