added svcapi ui and camunda code
[it/otf.git] / otf-camunda / src / main / resources / META-INF / securityFilterRules.json
diff --git a/otf-camunda/src/main/resources/META-INF/securityFilterRules.json b/otf-camunda/src/main/resources/META-INF/securityFilterRules.json
new file mode 100644 (file)
index 0000000..ef7694c
--- /dev/null
@@ -0,0 +1,52 @@
+{\r
+  "pathFilter": {\r
+    "deniedPaths": [\r
+      {\r
+        "path": "/camunda/api/engine/.*",\r
+        "methods": "*"\r
+      },\r
+      {\r
+        "path": "/camunda/api/cockpit/.*",\r
+        "methods": "*"\r
+      },\r
+      {\r
+        "path": "/camunda/app/tasklist/{engine}/.*",\r
+        "methods": "*"\r
+      },\r
+      {\r
+        "path": "/camunda/app/cockpit/{engine}/.*",\r
+        "methods": "*"\r
+      }\r
+    ],\r
+    "allowedPaths": [\r
+      {\r
+        "path": "/camunda/api/engine/engine/",\r
+        "methods": "GET"\r
+      },\r
+      {\r
+        "path": "/camunda/api/{app:cockpit}/plugin/{engine}/static/.*",\r
+        "methods": "GET"\r
+      },\r
+      {\r
+        "path": "/camunda/api/{app:cockpit}/plugin/{plugin}/{engine}/.*",\r
+        "methods": "*",\r
+        "authorizer": "org.camunda.bpm.webapp.impl.security.filter.EngineRequestAuthorizer"\r
+      },\r
+      {\r
+        "path": "/camunda/api/engine/engine/{engine}/.*",\r
+        "methods": "*",\r
+        "authorizer": "org.camunda.bpm.webapp.impl.security.filter.EngineRequestAuthorizer"\r
+      },\r
+      {\r
+        "path": "/camunda/app/{app:cockpit}/{engine}/.*",\r
+        "methods": "*",\r
+        "authorizer": "org.camunda.bpm.webapp.impl.security.filter.ApplicationRequestAuthorizer"\r
+      },\r
+      {\r
+        "path": "/camunda/app/{app:tasklist}/{engine}/.*",\r
+        "methods": "*",\r
+        "authorizer": "org.camunda.bpm.webapp.impl.security.filter.ApplicationRequestAuthorizer"\r
+      }\r
+    ]\r
+  }\r
+}\r