[
https://issues.jboss.org/browse/WFCORE-4485?page=com.atlassian.jira.plugi...
]
Farah Juma moved EAP7-1264 to WFCORE-4485:
------------------------------------------
Project: WildFly Core (was: EAP 7 Planning Pilot)
Key: WFCORE-4485 (was: EAP7-1264)
Issue Type: Feature Request (was: Requirement)
Workflow: GIT Pull Request workflow (was: EAP Agile Workflow
2.0)
Component/s: Security
(was: Security)
EAP PT Pre-Checked (PC): (was: TODO)
Target Release: (was: 7.3.0.GA)
EAP PT Community Docs (CD): (was: TODO)
EAP PT Product Docs (PD): (was: New)
EAP PT Test Dev (TD): (was: TODO)
EAP PT Docs Analysis (DA): (was: TODO)
EAP PT Test Plan (TP): (was: TODO)
EAP PT Analysis Document (AD): (was: TODO)
Writer: (was: Chuck Copello)
Support for multiple security realms - Distributed Identities
-------------------------------------------------------------
Key: WFCORE-4485
URL:
https://issues.jboss.org/browse/WFCORE-4485
Project: WildFly Core
Issue Type: Feature Request
Components: Security
Reporter: Farah Juma
Priority: Major
Labels: CD17-Deferred, EAP-CD19, Previous_RFE
Fix For: 11.0.0.Beta1
By stacking LoginModules it was possible using PicketBox to attempt to authenticate using
one remote store and if that failed try the next store in the list.
This RFE is to consider the use case where identities could be located across multiple
stores and how they are aggregated together.
Additionally this use case should consider how the authorization information could be
loaded from multiple sources and merged.
This RFE is not about fail over in the event of a realm being unavailable although it may
be related.
This RFE is created as a result of comparing the differences between the PicketBox JAAS
architecture and the Elytron architecture so I would not recommend this proceeds without
some real world use cases identified.
--
This message was sent by Atlassian Jira
(v7.12.1#712002)