USACE / USACE/cwms-data-api

Users Endpoints in CWBI Test Return 403

Open
#1,249 0 comments 0 reactions 0 assignees View on GitHub

Nobody has claimed this yet.

Dominant language
Java
Stars
28
Forks
25
Avg merge
4d 22h
Merged PRs (30d)
20

Description

Attempting to login via the shared username in CWBI test results in

{
  "message": "Missing roles {Role{name='CWMS User Admins'}}",
  "incidentIdentifier": "user input error",
  "details": {}
}

using

curl -X 'GET' \
  'https://cwms-data-test.<REDACTED>/cwms-data/users' \
  -H 'accept: application/json' \
  -H 'Authorization: Bearer mylongtoken'

Possibly related to

Contributor guide

Open the contributing guide

First steps

  1. Read the whole issue, then the project's contributing guide.
  2. Comment on the issue to say you are picking it up — it saves two people doing the same work.
  3. Fork the repository and make your change on a branch.
  4. Open a pull request that references the issue number.

Research direction

Start by reproducing the GET /cwms-data/users request with the shared CWBI test credentials and confirm the missing CWMS User Admins role response. Review the context in pull request 907 and issue 928 to determine whether the failure is an authorization configuration or endpoint regression. Done means the cause is identified and authorized CWBI users can access the users endpoint without the 403.

Written by the indexing model from the issue text.

Assessment

Tech stack
java
Domain
api, authorization
Issue type
Bug
Difficulty
4/5
Estimated time
3-5 days
Activity status
Stale
Clarity
Needs clarification
Newbie friendliness
25/100

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.