Graylog2 / Graylog2/graylog2-server
Restrict access to API/Enforce token-only policy for API
Open
feature
triaged
- Dominant language
- Java
- Stars
- 8.1k
- Forks
- 1.1k
- Avg merge
- 1d 20h
- Merged PRs (30d)
- 217
Description
## What?
As an operator, I'd like to be able to restrict access to Graylog's API, or at least enforce a token-only method of granting access. Currently, any user who has an account has access to the API.
## Why?
This is in reference to Z-4463.
Contributor guide
Assessment
This issue has not been assessed yet.