⇤ ← Revision 1 as of 2008-06-26 11:44:42
Size: 985
Comment: Created by the PackagePages action.
|
← Revision 2 as of 2010-03-17 13:12:29 ⇥
Size: 985
Comment: converted to 1.6 markup
|
No differences found! |
Challenge
How do we handle access control, when referencing from the core DOMS to external resources, either intra- or internet based?
Cases
- Ripped CDs placed on a server positioned at Statsbiblioteket
- Papers placed on a restricted website, which Statsbiblioteket has access to
Solutions
A general solution is to route all resources through a core DOMS maschine. This is impractical for large files or streaming media.
Servers at Statsbiblioteket
A solution for Case 1, suggested by the technical department (the basement guys):
- Assume that access validation is already handled by the core DOMS.
- Let the CD server allow unrestricted access from DOMS maschines.
- Let the DOMS request a one-time URL from the CD server. The one-time URL is accessible from anywhere.
- Present the one-time URL to the end-user.
External resources
Make a proxy-server, which uses the same one-time validation schema as above.