Comment 1 for bug 988920

Revision history for this message
Joseph Heck (heckj) wrote : Re: Token authentication for a user in a disabled tenant does not raise Unauthorized error

Should it?

Since a user isn't determined to be uniquely part of a tenant (i.e. a user *can* be associated with multiple tenants), then the authentication of a user is a completely independent of it's applicability to the tenant and it's state (enabled/disabled).

There is the potential for a special case that *when* a user is associated with a single tenant, and that tenant is disabled, the auth should fail. Is that what you're suggesting?