Skip to content

SCS-0128: Drop user account lockout test - #1247

Merged
mbuechse merged 2 commits into
mainfrom
fzahn/scs-0128-drop-user-lockout
Aug 6, 2026
Merged

SCS-0128: Drop user account lockout test#1247
mbuechse merged 2 commits into
mainfrom
fzahn/scs-0128-drop-user-lockout

Conversation

@toothstone

Copy link
Copy Markdown
Contributor

It's not standardized how CSPs are expected to handle this, so we shouldn't test for it.

@depressiveRobot depressiveRobot added IaaS Issues or pull requests relevant for Team1: IaaS standards Issues / ADR / pull requests relevant for standardization & certification labels Jul 17, 2026
@depressiveRobot

Copy link
Copy Markdown
Contributor

You may be right that there is no other mandatory standard for this. However, SCS-0128 defines which Tempest tests have to be run successfully (hence are mandatory). We should first discuss this in the SIG Std/Cert.

@toothstone

Copy link
Copy Markdown
Contributor Author

@mbuechse AFAIK this found consensus to remove in the last SIG, would you give your approval and merge please?

@mbuechse

Copy link
Copy Markdown
Contributor

Can we add a comment to the standard text about this?

@toothstone
toothstone force-pushed the fzahn/scs-0128-drop-user-lockout branch from 53175a4 to 41a514b Compare July 27, 2026 13:37
@toothstone
toothstone requested review from fkr and garloff as code owners July 27, 2026 13:37
@toothstone
toothstone force-pushed the fzahn/scs-0128-drop-user-lockout branch from 41a514b to cc4839f Compare July 27, 2026 13:38
@toothstone

Copy link
Copy Markdown
Contributor Author

@mbuechse I've added a note explaining the removal to the implementation notes, is this what you had in mind?

@mbuechse

mbuechse commented Aug 5, 2026

Copy link
Copy Markdown
Contributor

@toothstone I don't quite understand why this was put in the testing notes... The list is normative, and we should motivate this list in the standard, I would say.

@toothstone

Copy link
Copy Markdown
Contributor Author

@toothstone I don't quite understand why this was put in the testing notes... The list is normative, and we should motivate this list in the standard, I would say.

IMHO this kind of history/change log should be kept outside the standard text, since it is irrelevant to everyone using or implementing it. I've not seen this in any other SCS standard, either.

@mbuechse

mbuechse commented Aug 6, 2026

Copy link
Copy Markdown
Contributor

Other standards do have that. I can look up examples later. But more importantly, other standards motivate their regulation, be it interlaced within the normative text or in a motivation section. We cannot just toss a naked list of testcasea over to people.

@toothstone

Copy link
Copy Markdown
Contributor Author

We cannot just toss a naked list of testcasea over to people.

This PR is not what adds that list, though. It feels quite lopsided that removing a single test case now needs more explanation and documentation than all of OPC/SCS-0128 seems to have ever needed...

Feel free to drop a suggestion where to move the explanation, I'm happy to accept it.

@mbuechse

mbuechse commented Aug 6, 2026

Copy link
Copy Markdown
Contributor

We don't need to compensate for everything that was neglected previously. The only thing I want is that we document why we removed the test case, and that we do it in the main document. The main document is a draft for a reason: this needs to be expanded upon in a big way. For the time being, we just don't want to forget this change.

toothstone and others added 2 commits August 6, 2026 11:34
It's not standardized how CSPs are expected to handle this, so we shouldn't test for it.

Signed-off-by: toothstone <friedrich.zahn@alasca.cloud>
Making explicit the way it's been handled heretofore.

Signed-off-by: Matthias Büchse <matthias.buechse@alasca.cloud>
@mbuechse
mbuechse force-pushed the fzahn/scs-0128-drop-user-lockout branch from 07b0e3f to e30d8e3 Compare August 6, 2026 09:34
@mbuechse
mbuechse merged commit ab4be81 into main Aug 6, 2026
8 of 9 checks passed
@mbuechse
mbuechse deleted the fzahn/scs-0128-drop-user-lockout branch August 6, 2026 09:35
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

IaaS Issues or pull requests relevant for Team1: IaaS standards Issues / ADR / pull requests relevant for standardization & certification

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants