[aerogear-dev] Simplify Security of AeroDoc

Matthias Wessendorf matzew at apache.org
Tue Jul 22 05:00:14 EDT 2014


On Tue, Jul 22, 2014 at 10:58 AM, Sebastien Blanc <scm.blanc at gmail.com>
wrote:

> Hi All !
>
> I'm currently working on APGUSH-810[1] which consist in removing  the
> dependency we still had on the deprecated aerogear-security project (RIP my
> friend).
>
> But now, if I want to keep AeroDoc, feature equal as before, I have to add
> a LOT of code around security (to handle role, annotations etc ...).
> AeroDoc is already quite complex and time consuming to maintain and the
> core scope is not security but advanced Push.
>
> So ... What I would like to propose is to keep only the authentification
> (log in) and remove all the role handling part to simplify it.
>
> The only effect that this will introduce, is that a logged in user can
> also access the admin to create leads.
>

that is fine w/ me

>
>
> Wdyt ?
>
> Sebi
>
>
> [1] https://issues.jboss.org/browse/AGPUSH-810
>
> _______________________________________________
> aerogear-dev mailing list
> aerogear-dev at lists.jboss.org
> https://lists.jboss.org/mailman/listinfo/aerogear-dev
>



-- 
Matthias Wessendorf

blog: http://matthiaswessendorf.wordpress.com/
sessions: http://www.slideshare.net/mwessendorf
twitter: http://twitter.com/mwessendorf
-------------- next part --------------
An HTML attachment was scrubbed...
URL: http://lists.jboss.org/pipermail/aerogear-dev/attachments/20140722/5930f720/attachment.html 


More information about the aerogear-dev mailing list