[security-dev] DeltaSpike, IDM, Authentication and Authorization
sbryzak at redhat.com
Mon Jul 30 18:15:21 EDT 2012
On 31/07/12 04:40, Bruno Oliveira wrote:
> Hi, some few open questions inline.
> On Friday, July 27, 2012 at 1:35 PM, Pete Muir wrote:
> Which IDM domain model should I use, picketlink idm or DeltaSpike? I
> might be wrong, but probably those entities belongs to the IDM?
>> This contains methods to log in, log out, get the current user, and
>> check if a user is logged in or not. In order to log in/log out, a
>> LoginCredential is provided:
> How do they fit together?
>> We also have a very basic representation of a user, which contains
>> some unique identifier for the user:
>> This isn't useful on it's own of course, but would plug into whatever
>> IDM solution you happen to use. In our case PicketLink IDM.
> Why not make use of same entity model from PicketLink IDM?
> Or create some level of abstraction like that.
> How do I extend the User class to include a token and the email attribute?
All of this has been removed from DeltaSpike for now, and while the plan
is to eventually add a simple authentication API (I'm not sure why we
couldn't just use the one we already had) I don't think we can depend on
this for now, so I'll be re-implementing all of it again in the
PicketLink CDI module.
> - Bruno
> security-dev mailing list
> security-dev at lists.jboss.org
-------------- next part --------------
An HTML attachment was scrubbed...
More information about the security-dev