SCS-0128: Drop user account lockout test - #1247
Conversation
|
You may be right that there is no other mandatory standard for this. However, SCS-0128 defines which Tempest tests have to be run successfully (hence are mandatory). We should first discuss this in the SIG Std/Cert. |
|
@mbuechse AFAIK this found consensus to remove in the last SIG, would you give your approval and merge please? |
|
Can we add a comment to the standard text about this? |
53175a4 to
41a514b
Compare
41a514b to
cc4839f
Compare
|
@mbuechse I've added a note explaining the removal to the implementation notes, is this what you had in mind? |
|
@toothstone I don't quite understand why this was put in the testing notes... The list is normative, and we should motivate this list in the standard, I would say. |
IMHO this kind of history/change log should be kept outside the standard text, since it is irrelevant to everyone using or implementing it. I've not seen this in any other SCS standard, either. |
|
Other standards do have that. I can look up examples later. But more importantly, other standards motivate their regulation, be it interlaced within the normative text or in a motivation section. We cannot just toss a naked list of testcasea over to people. |
This PR is not what adds that list, though. It feels quite lopsided that removing a single test case now needs more explanation and documentation than all of OPC/SCS-0128 seems to have ever needed... Feel free to drop a suggestion where to move the explanation, I'm happy to accept it. |
|
We don't need to compensate for everything that was neglected previously. The only thing I want is that we document why we removed the test case, and that we do it in the main document. The main document is a draft for a reason: this needs to be expanded upon in a big way. For the time being, we just don't want to forget this change. |
It's not standardized how CSPs are expected to handle this, so we shouldn't test for it. Signed-off-by: toothstone <friedrich.zahn@alasca.cloud>
Making explicit the way it's been handled heretofore. Signed-off-by: Matthias Büchse <matthias.buechse@alasca.cloud>
07b0e3f to
e30d8e3
Compare
It's not standardized how CSPs are expected to handle this, so we shouldn't test for it.