File tree Expand file tree Collapse file tree 3 files changed +13
-1
lines changed
Expand file tree Collapse file tree 3 files changed +13
-1
lines changed Original file line number Diff line number Diff line change @@ -91,8 +91,9 @@ apigee:
9191{% if ENV.has_mock_auth | default(false) %}
9292 - identity-service-mock-{{ ENV.name }}
9393{% endif %}
94- scopes :
94+ scopes : # Step 1: Configured product to include scopes
9595 - ' urn:nhsd:apim:user-nhs-login:P9:{{ SERVICE_NAME }}'
96+ - ' urn:nhsd:apim:user-nhs-id:aal3:{{ SERVICE_NAME }}'
9697 specs :
9798 - name : {{ NAME }}
9899 path : {{ SERVICE_NAME }}.json
Original file line number Diff line number Diff line change 1+ <!-- Step 2: Adding VerifyAccessToken policy to your proxy-->
2+ <OAuthV2 async =" false" continueOnError =" false" enabled =" true" name =" VerifyAccessTokenUserCIS2AAL3" >
3+ <Operation >VerifyAccessToken</Operation >
4+ <Scopes >urn:nhsd:apim:user-nhs-id:aal3:validated-relationships-service-api</Scopes >
5+ </OAuthV2 >
Original file line number Diff line number Diff line change 22<TargetEndpoint name =" validated-relationships-service-api-target" >
33 <PreFlow >
44 <Request >
5+ <!-- Step 3: Configuring the VerifyAccessToken policy to restrict access-->
56 <Step >
7+ <Condition >(proxy.pathsuffix ne "/Consent") or (request.verb != "POST")</Condition >
68 <Name >VerifyAccessTokenUserNhsLoginP9</Name >
79 </Step >
10+ <Step >
11+ <Condition >(proxy.pathsuffix MatchesPath "/Consent") and (request.verb = "POST")</Condition >
12+ <Name >VerifyAccessTokenUserCIS2AAL3</Name >
13+ </Step >
814 <Step >
915 <Name >FlowCallout.ApplyRateLimiting</Name >
1016 </Step >
You can’t perform that action at this time.
0 commit comments