Differences
This shows you the differences between two versions of the page.
| Both sides previous revision Previous revision Next revision | Previous revision | ||
| dido:03-dido-te:99-annexes:annex-c-requirements:03-functional-requirements:03-03-twin-node-requirements:twin-009-control-twin-interaction:twin-009d-prevent-unauthorized-resource-state-changes [2026/08/22 14:21] – removed - external edit (Unknown date) 127.0.0.1 | dido:03-dido-te:99-annexes:annex-c-requirements:03-functional-requirements:03-03-twin-node-requirements:twin-009-control-twin-interaction:twin-009d-prevent-unauthorized-resource-state-changes [2026/08/22 14:26] (current) – nick_dido | ||
|---|---|---|---|
| Line 1: | Line 1: | ||
| + | ====== TWIN-009d — Prevent Unauthorized Resource State Changes ====== | ||
| + | [[dido: | ||
| + | |||
| + | ===== Statement ===== | ||
| + | |||
| + | The [[dido: | ||
| + | |||
| + | ===== Source ===== | ||
| + | |||
| + | * [[dido: | ||
| + | * [[dido: | ||
| + | * [[dido: | ||
| + | |||
| + | ===== Rationale ===== | ||
| + | |||
| + | TWIN-009c requires authorization for permitted interactions that change the state of a [[dido: | ||
| + | |||
| + | This requirement enforces that authorization prerequisite by preventing an unauthorized interaction from changing Resource state. | ||
| + | |||
| + | Separating the authorization requirement from enforcement allows the two obligations to be verified independently. A system may correctly determine that authorization is required while failing to prevent an unauthorized state change. | ||
| + | |||
| + | Technical connectivity, | ||
| + | |||
| + | ===== Applies To ===== | ||
| + | |||
| + | * [[dido: | ||
| + | * [[dido: | ||
| + | * [[dido: | ||
| + | * [[dido: | ||
| + | * [[dido: | ||
| + | |||
| + | ===== Verification ===== | ||
| + | |||
| + | Verification confirms that: | ||
| + | |||
| + | - An interaction lacking required authorization does not change Resource state. | ||
| + | - An interaction for which authorization is denied does not change Resource state. | ||
| + | - Authorization for one interaction does not authorize a different interaction. | ||
| + | - Authorization associated with one Resource does not authorize a state change to another Resource. | ||
| + | - Prevention of the unauthorized state change is traceable to the attempted interaction and authorization decision. | ||
| + | |||
| + | Verification includes an unauthorized interaction that attempts to change Resource state and confirms that the Resource state remains unchanged. | ||
| + | |||
| + | ===== Traceability ===== | ||
| + | |||
| + | {{backlinks> | ||
| + | |||
| + | ===== ConOps Relationship ===== | ||
| + | |||
| + | This requirement enforces the authorization prerequisite established by TWIN-009c by preventing unauthorized changes to Resource state. | ||
| + | |||
| + | ===== Delivery Phase ===== | ||
| + | |||
| + | TBD | ||
| + | |||
| + | ===== Requirement Status ===== | ||
| + | |||
| + | Draft | ||
| + | |||
| + | ===== Statement Reference ===== | ||
| + | |||
| + | <code dokuwiki> | ||
| + | {{section> | ||
| + | </ | ||
| + | |||
| + | ---- | ||
| + | |||
| + | <WRAP centeralign> | ||
| + | © 2026 Dido Solutions, Inc. and Jackrabbit Consulting, Inc. | ||
| + | </ | ||