Closed Bug 1014742 Opened 11 years ago Closed 10 years ago

[mig api&console] support multiple signatures of actions

Categories

(Enterprise Information Security Graveyard :: MIG, task)

x86_64
Linux
task
Not set
normal

Tracking

(Not tracked)

RESOLVED FIXED

People

(Reporter: jvehent, Assigned: jvehent)

References

Details

The client `mig-action-generator` must be able to load an action that has already been signed once, and append another signature to it. This would allow investigators to multi-sign actions that require a higher level of privileges.
Assignee: nobody → jvehent
Component: Operations Security (OpSec): General → Operations Security (OpSec): MIG
This work needs a different strategy: an investigator must be able to sign an action and submit it to the api for more signatures, then launched. The API should have a staging area, maybe under /api/v1/action/pending, where action can be registered but not sent. The dashboard resource at /api/v1/dashboard should list action pending signatures. The console should list actions pending signatures, allow an investigator to retrieve a pending action, and repost it to the staging area for more signatures, or launch it.
Blocks: 1069988
Summary: [mig client] support multiple signatures in action generator → [mig api&console] support multiple signatures of actions
No longer blocks: 896480
Group: mozilla-employee-confidential
Component: Operations Security (OpSec): MIG → MIG
Product: mozilla.org → Enterprise Information Security
Version: other → unspecified
Group: mozilla-employee-confidential
Migrated to github issues: https://github.com/mozilla/mig/issues
Status: NEW → RESOLVED
Closed: 10 years ago
Resolution: --- → FIXED
Product: Enterprise Information Security → Enterprise Information Security Graveyard
You need to log in before you can comment on or make changes to this bug.