Repository navigation
Why not all authorization requirements included in ForbiddenResponseOperationFilter? #14
Unanswered
xperiandri
asked this question in
Q&A
Replies: 5 comments
|
Forbidden means you have access to the site but you are not allowed to access the resource within the site. Are there other you think should be included? |
0 replies
|
Why not just check for any |
0 replies
|
You don't want to include Also we can't be sure if any custom requirements a developer creates should create a 401 or 403, so I'm very explicit here about types that should create a 403. |
0 replies
|
I thought that requirement must produce 403 only |
0 replies
|
|
0 replies
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Uh oh!
There was an error while loading. Please reload this page.
Why only these requirements are included?
All reactions