Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

...

On the author context use the superuser -  he is the superuser is granted:

  • Read/Write access for the path / on everyJCR workspace - granted by the role superuser.
  • Web access for the path /magnoliaAuthor/.rest* - granted by the role rest-admin.

Note that superuser is given a lot of power. Use it carefully! 

Using anonymous user on the public context

The public context typically is visited by users which do not authenticate. Nevertheless, such visits are done as anonymous user - which also has some permissions.

On the public context anonymous user is granted:

  • Read access on the path / for the workspaces websitedamgoogleSitemapscategorytours
  • Web access for the HTTP method 
    Mgnl get
     on the path  path /magnoliaAuthor/.rest/delivery/*

As you can see, anonymous user only has read access and can only access the Delivery endpoint. That is sufficient for the moment.

On a productive environment - we highly recommend to create custom REST roles granting specific access for specific use cases- he is granted:..


...

Anchor
test-setup
test-setup
Testing the setup

...