Forum Discussion
DELETE method with AS3 is too powerful !
Well first of all I'm not using BigIQ :) But I get the point
Don't get me wrong I'm not saying that it is too much power to be allowed to delete everything ; I'm saying that it's too easy to make a mistake, and it could totally happen by accident ... If you just miss the argument, because you used a variable that has not been populated for instance ... I totally see that coming from miles away :)
tenant=$1
DELETE https://192.0.2.10/mgmt/shared/appsvcs/declare/$tenant
How are you sure that it will not delete everything while you just wanted to delete the TEST tenant ? :)
I'm really afraid of a collateral damage, due to a totally honest mistake in code management or postman misuse ...
And that's why I'm saying that I would feel a little bit more confident if a parameter was mandatory associated with the DELETE command
You could argue that it like the "rm /." when you wanted to "rm ./" but at least there is the -f to save your sorry ass :)
- Chase_AbbottDec 31, 2019
Admin
Really the better answer would be RBAC within BIG-IP native to allow a basic subset of roles that BIG-IQ uses. But that's my opinion only. 😐
Update: I think we'll follow up internally on this to see if there's an interesting discussion around your question and idea.
Help guide the future of your DevCentral Community!
What tools do you use to collaborate? (1min - anonymous)Recent Discussions
Related Content
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com