cfea218390
Return an HTTP Forbidden code (403) instead of an HTTP Not Found code (404) if a tenant is trying to update it's own object. This is a safe adjustment since the tenant already knows this object exists so pretending it doesn't isn't improving secuirty as much as it is causing confusion. Closes-Bug: #1352907 Change-Id: I021ba6f890dfbabddd53e75c63083f5da0ecfdec |
||
---|---|---|
.. | ||
rpc | ||
v2 | ||
views | ||
__init__.py | ||
api_common.py | ||
extensions.py | ||
versions.py |