Given:
Optimize runs in CCSM mode
When:
when a request to the public API requiring authentication with a valid access_token is sent
Then:
The request is redirected for login to IAM
Expected:
the requests on the public api should not require a valid user session but only a valid access_token