[
http://jira.jboss.com/jira/browse/JBSEAM-732?page=all ]
Shane Bryzak closed JBSEAM-732.
-------------------------------
Resolution: Done
JPA and Hibernate entity security is done (and documented). Nullifying entity attributes
is a scary thing that I think we should leave out for now.
Entity security
---------------
Key: JBSEAM-732
URL:
http://jira.jboss.com/jira/browse/JBSEAM-732
Project: JBoss Seam
Issue Type: Feature Request
Components: Security
Reporter: Gavin King
Assigned To: Shane Bryzak
Fix For: 1.1.7.GA
Two things:
(1) update/delete/insert security:
We should look at merging this stuff together with the entity authorization that exists
in Hibernate. This might mean just copying and reimplementing the basic mechanism used in
Hibernate.
(2) view attribute security
We could look into having attributes automagically nullified by an interceptor, based on
attribute-level read permissions. However, there are definite problems with implementing
this.
--
This message is automatically generated by JIRA.
-
If you think it was sent incorrectly contact one of the administrators:
http://jira.jboss.com/jira/secure/Administrators.jspa
-
For more information on JIRA, see:
http://www.atlassian.com/software/jira