[teiid-issues] [JBoss JIRA] Commented: (TEIID-1327) API request: Fine grained security

Steven Hawkins (JIRA) jira-events at lists.jboss.org
Thu Nov 11 10:55:01 EST 2010


    [ https://jira.jboss.org/browse/TEIID-1327?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=12562867#action_12562867 ] 

Steven Hawkins commented on TEIID-1327:
---------------------------------------

Mark: yes getInaccessibleResources could be called multiple times for each user command.  Do you need the original sql and or more information about what part of the query columns are used in?  Has hasRole would be used by the system hasRole function.  The notion of what role names are applicable would be entirely up to the provider.

Ramesh: in keeping with the additive nature of our role permissions, you would apply the RoleProvider permissions additively as well. 

> API request:  Fine grained security
> -----------------------------------
>
>                 Key: TEIID-1327
>                 URL: https://jira.jboss.org/browse/TEIID-1327
>             Project: Teiid
>          Issue Type: Feature Request
>          Components: Query Engine
>    Affects Versions: 7.1
>            Reporter: Mark Addleman
>            Assignee: Steven Hawkins
>             Fix For: 7.3
>
>
> I'd like an API to implement fine grained security checks.  The use case is to create a permission from each table+column requested, each stored procedure and other database objects and validate the user id and permission against an external security manager.

-- 
This message is automatically generated by JIRA.
-
If you think it was sent incorrectly contact one of the administrators: https://jira.jboss.org/secure/Administrators.jspa
-
For more information on JIRA, see: http://www.atlassian.com/software/jira

        


More information about the teiid-issues mailing list