-
-
Notifications
You must be signed in to change notification settings - Fork 27
This issue was moved to a discussion.
You can continue the conversation there. Go to discussion →
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
VRMS stakeholder meeting, August 2024 #359
Comments
Questions for VRMS
|
app token for login
Background info
|
login processI remember the old v0.4 VRMS got it working to the point where it was able to create new users in the cognito user pool and was able to login to cognito and get a JWT. Basically, it should work like that, where
PD backend will be able to recognize the token and know which user is making the request. Reasoning
|
APIs for VRMS features
|
Potential PD Schema Change: We need to include a way to indicate whether or not a project's github repo is archived. If a project has multiple github repos, each repo can have an archive indicator. |
Notes from meeting
|
I'm not sure if VRMS needs to do Cognito So that could be an app token. But app tokens aren't useful if they're available in the frontend where the user can potentially access them if they know what they're doing. That's why there's the backend requirement. But Cognito documentation itself doesn't recommend using client_secret for frontend apps. It recommends having it for apps with backends, like CTJ. Another way to limit access is to limit the IPs and such that can send API requests. Maybe that route is the way to go if we want to control API access. Or maybe there are other ways. |
This issue was moved to a discussion.
You can continue the conversation there. Go to discussion →
Overview
We are meeting with a key stakeholder, the VRMS team, to discuss their needs and gain input as we continue with initial setup.
This issue records both our questions for them and their responses/feedback.
Action Items
Resources/Instructions
The text was updated successfully, but these errors were encountered: