Project

General

Profile

Actions

Idea #1904

closed

User can get a no-auth-required link to an Arvados object, i.e., turn on "anyone with the link can view" permission

Added by Tom Clegg about 10 years ago. Updated almost 10 years ago.

Status:
Resolved
Priority:
Normal
Assigned To:
Category:
-
Story points:
3.0
Release relationship:
Auto

Description

Proposed approach
  • Owner creates a token scoped to the object being shared. (Semantics of token scopes might need to be clarified: How do you say "read only" here?)
  • Use something like the existing ?api_token= behavior to embed the token into the "link to share", but at least use a different name. Using a "share" link shouldn't interfere with a user's real login session.
  • Propagate the token given in the URL to the "download" links on the collections#show page, so those links can be copied to a wget command line.

Subtasks 10 (0 open10 closed)

Task #2664: Workbench can manage no-auth URLs to access a specific objectClosedBrett Smith05/12/2014Actions
Task #2702: API server accepts a supplemental list of API tokens for additional read-only permissionsResolvedBrett Smith04/18/2014Actions
Task #2663: Workbench supports a "temporary API token" query parameter everywhereResolvedBrett Smith04/28/2014Actions
Task #2687: Review 1904-workbench-temp-token-wipResolvedBrett Smith04/18/2014Actions
Task #2743: Review 1904-wget-collections-wipResolvedPeter Amstutz04/18/2014Actions
Task #2682: Review 1904-object-scopes-wipResolvedPeter Amstutz04/18/2014Actions
Task #2666: Workbench has an interface to share collections using reader tokensResolvedPeter Amstutz05/06/2014Actions
Task #2662: Workbench can get an API token, good for reading only one objectResolvedBrett Smith04/18/2014Actions
Task #2707: Review 1904-api-reader-tokens-wipResolvedTom Clegg04/18/2014Actions
Task #2736: Review 1904-workbench-reader-tokens-wipResolvedTom Clegg04/18/2014Actions
Actions

Also available in: Atom PDF