All the authorization part in my opinion should be left outside of the framework scope. Because it always depends on business needs.<br>The way that it's handled in Drools Flow and in jBPM 3.2.x it's a good approach.<br>
About BPMN2, if the PVM supports different languages, JPDL can be supported as well, but for interoperability reasons would be nice to have BPMN2 as priority. jBPM 4.x also has that approach right? it was trying to support BPMN2 as far as I know. <br>
<br><br><br><div class="gmail_quote">On Sat, Apr 17, 2010 at 9:15 AM, Sebastian Schneider <span dir="ltr"><<a href="mailto:schneider@dvz.fh-aachen.de">schneider@dvz.fh-aachen.de</a>></span> wrote:<br><blockquote class="gmail_quote" style="margin: 0pt 0pt 0pt 0.8ex; border-left: 1px solid rgb(204, 204, 204); padding-left: 1ex;">
Hello Mauricio, hello Maciej, hello folks<br>
<br>
Am 17.04.2010 14:37, schrieb Mauricio Salatino:<br>
<div class="im">> It looks really good. I'm agree to put BPMN2 as default modeling<br>
> language. Other languages as jPDL and RuleFlow can be supported as well<br>
> but the focus needs to be on BPMN2.<br>
<br>
</div>I have to say that I partly disagree here. In general the focus should<br>
be on BPMN-2.0 but to enable users to have a smooth transition at the<br>
beginning jPDL should have the same priority. It would provide a much<br>
easier migration from previous engines. This again leads to the<br>
question: How far will jBPM 5 be based upon jBPM 4.x.<br>
<div class="im"><br>
> On Fri, Apr 16, 2010 at 3:17 PM, <<a href="mailto:swiderski.maciej@gmail.com">swiderski.maciej@gmail.com</a><br>
</div><div class="im">> <mailto:<a href="mailto:swiderski.maciej@gmail.com">swiderski.maciej@gmail.com</a>>> wrote:<br>
><br>
> Hi,<br>
><br>
> first of all - I am glad to see some formal activities around jBPM.<br>
><br>
> I would like to suggest to put some focus as well on authorization<br>
> that should provide at least some basic option to restrict access to<br>
> selected processes to users with granted roles, etc.<br>
<br>
</div>IMHO it should also be possible to leave authorization to the<br>
application - for the reason of embeddability. So maybe this should be<br>
configurable and pluggable. Anyway in contrast to the jBPM 4.x right<br>
now, it should be possible to pass the username to engine when invoking<br>
operations on the API. A common use case is the "process owner" - the<br>
guy who started the process but also for reasons of audit and<br>
traceability: who performed which action on the engine. I don't what<br>
kind of support is existent in jBPM 3.2.<br>
<div class="im"><br>
><br>
> There was mentioned that jBPM 5 will have WSHT - does it mean it<br>
> will provide extensive support for web services? Currently it is not<br>
> there and I think Riftsaw is dedicated for Web Service orchestration<br>
> (BPEL). How jBPM will fit into that?!<br>
<br>
</div>I understand this in the following way: a BPEL engine should fit in the<br>
overall architecture - kind of pluggable - but jBPM should not execute<br>
BPEL processes itself. However from the PVM's point of view this is<br>
possible. Since it will be a BPMN-2.0 there will be webservice support<br>
regarding service tasks since webservice calls are the only service<br>
calls standarized by the BPMN 2.0 specification.<br>
<br>
Regards<br>
Sebastian<br>
<font color="#888888"><br>
--<br>
Sebastian Schneider<br>
e-mail: <a href="mailto:Sebastian.Schneider@alumni.fh-aachen.de">Sebastian.Schneider@alumni.fh-aachen.de</a><br>
</font><div><div></div><div class="h5">_______________________________________________<br>
jbpm-dev mailing list<br>
<a href="mailto:jbpm-dev@lists.jboss.org">jbpm-dev@lists.jboss.org</a><br>
<a href="https://lists.jboss.org/mailman/listinfo/jbpm-dev" target="_blank">https://lists.jboss.org/mailman/listinfo/jbpm-dev</a><br>
</div></div></blockquote></div><br><br clear="all"><br>-- <br> - <a href="http://salaboy.wordpress.com">http://salaboy.wordpress.com</a><br> - <a href="http://www.jbug.com.ar">http://www.jbug.com.ar</a><br> - Salatino "Salaboy" Mauricio -<br>