notes/cisco_ft_securex_registration.org

This commit is contained in:
Yann Esposito (Yogsototh) 2022-01-17 11:42:11 +01:00
parent a6833ec9aa
commit 1114b420ba
Signed by untrusted user who does not match committer: yogsototh
GPG key ID: 7B19A4C650D59646

View file

@ -19,20 +19,14 @@ Figma: https://www.figma.com/file/Bz3m25kpWXpdct7AnhmNsW/SXSO-Registeration?node
* Technical Plan
** Support private email vs public emails
/Estimate: 1 release cycles after the list is provided./
*DONE*
+/Estimate: 1 release cycles after the list is provided./+
The solution is to use a blacklist of domains where any user could create
multiple email accounts pseudo-anonymously.
Details: https://github.com/advthreat/response/issues/979
*** Question is about where to put the list?
/Estimate: 1 release cycles depends on ops/
I suggest the list should be a single file in tenzin-config that should be
used on all environments.
*** CANCELED Support allow-list exceptions for some Cisco user.
:LOGBOOK:
- State "CANCELED" from "HOLD" [2022-01-17 Mon 10:57] \\
@ -107,7 +101,6 @@ We need to create another Entity for access request to an Org.
When a user request access to an organization.
We should create this object in DB.
** UI Revamp.
/Estimate: 5 release cycles/
@ -126,7 +119,6 @@ To reach that ideally we should sync the source code as a jar in IROH.
In order to give the UI the ability to make a frontend application, we
should create news APIS that support a new UserIdentity-level JWT
1.
When the user see this page, we know the =UserIdentity= only.