Dynamic URL to object space mappings
To achieve the security goals described above, the mappings from dynamic URLs to ACL object entries need to be configured as shown in the following table.
Remember that the ordering of these
mappings is an important part
of achieving the security goals discussed earlier.
| Object Space Entry | URL Pattern |
|---|---|
| /ows/tr/browse |
/ows/db-apps/owa/tr.browse\?dest=*&date=??/??/???? |
| /ows/tr/auth |
/ows/db-apps/owa/tr.book\?dest=*&depart=??/??/????& return=??/??/???? |
| /ows/tr/auth |
/ows/db-apps/owa/tr.change |
| /ows/admin/forall |
/ows/db-apps/owa/admin.resume |
| /ows/admin/forall |
/ows/db-apps/owa/admin.browse\?empid=[th]??? |
| /ows/admin/auth |
/ows/db-apps/owa/admin.update\?empid=???? |