Skip to content

guestlinks: proxy middleware to validate guestlink cookies for authentication #3070

Description

@rhafer
  • Extract JWT from cookie
  • Validate JWT (lifetime, signature, ...)
  • Lookup share validate ttl
  • (Do we need to check if target resource is in scope here?, How's that handle for "normal" user shares)
  • Sign reva token for usertype guest, userid == mailaddress, (set scope if needed)
  • What about user-roles? Do magic-link user require a user-role?
  • Return status codes as outlined here: Discuss/Define authentication mechansim for "magiclinks" #2517 (comment)

No activity

Activity on this issue will appear here.

Activity

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Metadata

Metadata

Assignees

Type

No type

Projects

Milestone

No milestone

Relationships

None yet

Development

No branches or pull requests

Issue actions