Differences
This shows you the differences between two versions of the page.
| dido:03-dido-te:99-annexes:annex-c-requirements:03-functional-requirements:03-03-twin-node-requirements:twin-010-control-twin-interaction:twin-010d-prevent-unauthorized-state-changing-interactions [2026/08/21 16:59] – created nick_dido | dido:03-dido-te:99-annexes:annex-c-requirements:03-functional-requirements:03-03-twin-node-requirements:twin-010-control-twin-interaction:twin-010d-prevent-unauthorized-state-changing-interactions [2026/08/21 17:09] (current) – removed nick_dido | ||
|---|---|---|---|
| Line 1: | Line 1: | ||
| - | ====== TWIN-010d — Prevent Unauthorized State-Changing Interactions ====== | ||
| - | [[dido: | ||
| - | |||
| - | ===== Statement ===== | ||
| - | |||
| - | The [[dido: | ||
| - | |||
| - | ===== Source ===== | ||
| - | |||
| - | * [[dido: | ||
| - | * [[dido: | ||
| - | * [[dido: | ||
| - | |||
| - | ===== Rationale ===== | ||
| - | |||
| - | TWIN-010c establishes that a permitted state-changing interaction requires authorization. | ||
| - | |||
| - | This requirement enforces that authorization decision by preventing execution when the required authorization is absent or denied. | ||
| - | |||
| - | Separating the authorization requirement from enforcement keeps the obligations independently verifiable. A system may correctly identify that authorization is required yet still fail to prevent an unauthorized interaction from executing. | ||
| - | |||
| - | Prevention of unauthorized execution protects the state of participating [[dido: | ||
| - | |||
| - | ===== Applies To ===== | ||
| - | |||
| - | * [[dido: | ||
| - | * [[dido: | ||
| - | * [[dido: | ||
| - | * [[dido: | ||
| - | * [[dido: | ||
| - | * [[dido: | ||
| - | * [[dido: | ||
| - | |||
| - | ===== Verification ===== | ||
| - | |||
| - | Verification confirms that: | ||
| - | |||
| - | - A state-changing interaction without authorization does not execute. | ||
| - | - A state-changing interaction for which authorization is denied does not execute. | ||
| - | - An authorization granted for one interaction does not authorize a different interaction. | ||
| - | - An authorization granted for one target entity does not authorize modification of another target entity. | ||
| - | - Prevented execution does not change the state of the target Twin Realization, | ||
| - | - Prevention of unauthorized execution is traceable to the interaction and authorization decision. | ||
| - | |||
| - | Verification includes an attempted state-changing interaction without authorization and confirms that the interaction does not execute and the target state remains unchanged. | ||
| - | |||
| - | ===== Traceability ===== | ||
| - | |||
| - | {{backlinks> | ||
| - | |||
| - | ===== ConOps Relationship ===== | ||
| - | |||
| - | This requirement enforces the authorization prerequisite established by TWIN-010c before a state-changing interaction executes. | ||
| - | |||
| - | ===== Delivery Phase ===== | ||
| - | |||
| - | TBD | ||
| - | |||
| - | ===== Requirement Status ===== | ||
| - | |||
| - | Draft | ||
| - | |||
| - | ===== Statement Reference ===== | ||
| - | |||
| - | <code dokuwiki> | ||
| - | {{section> | ||
| - | </ | ||
| - | |||
| - | ---- | ||
| - | |||
| - | <WRAP centeralign> | ||
| - | © 2026 Dido Solutions, Inc. and Jackrabbit Consulting, Inc. | ||
| - | </ | ||