On Jan 20, 2018 11:59 PM, <[email protected]> wrote: Dear Gregg,
According to https://wiki.iotivity.org/security_resource_manager |Requests from DevOwner are allowed without checking ACL. I believe that is only half-true. It's true for (some?) SVRs, but (only?) during onboarding. I think it is never true for application-defined resources, at least not post-onboarding. Can somebody clarify this? G
_______________________________________________ iotivity-dev mailing list [email protected] https://lists.iotivity.org/mailman/listinfo/iotivity-dev
