Register issueshttps://community.opengroup.org/osdu/platform/system/register/-/issues2023-10-30T21:06:16Zhttps://community.opengroup.org/osdu/platform/system/register/-/issues/48Subscription Verification Request Incorrectly Encoded2023-10-30T21:06:16ZDerek HudsonSubscription Verification Request Incorrectly EncodedSubscription verification request (the request that the Register service sends to verify that a Push endpoint is valid) improperly encodes the `hmac` query string parameter, which allows raw `=` in the `hmac` query string parameter, whic...Subscription verification request (the request that the Register service sends to verify that a Push endpoint is valid) improperly encodes the `hmac` query string parameter, which allows raw `=` in the `hmac` query string parameter, which in tern can cause subscription creation to fail.
Testing a fix locally before publishing.M21 - Release 0.24Derek HudsonDerek Hudsonhttps://community.opengroup.org/osdu/platform/system/register/-/issues/27GET /subscription by notificationID should be restricted2021-08-27T21:34:31ZAliaksei DarafeyeuGET /subscription by notificationID should be restrictedRight now, to perform GET `/subscription?notificationId=X` operation user should has one of role (`users.datalake.ops`, `users.datalake.admins`, `users.datalake.editors`) but according security check access to this operation should be re...Right now, to perform GET `/subscription?notificationId=X` operation user should has one of role (`users.datalake.ops`, `users.datalake.admins`, `users.datalake.editors`) but according security check access to this operation should be restricted to only `users.datalake.ops`.ethiraj krishnamanaiduChris ZhangGary MurphyNitin-slbNeelesh ThakurRobert Chadwick [Schlumberger]ethiraj krishnamanaidu