[jboss-jira] [JBoss JIRA] Created: (JBAS-4149) Update Authorization to consider deployment level roles

Anil Saldhana (JIRA) jira-events at lists.jboss.org
Thu Feb 22 20:19:35 EST 2007


Update Authorization to consider deployment level roles
-------------------------------------------------------

                 Key: JBAS-4149
                 URL: http://jira.jboss.com/jira/browse/JBAS-4149
             Project: JBoss Application Server
          Issue Type: Task
      Security Level: Public (Everyone can see)
    Affects Versions: JBossAS-4.0.5.GA
            Reporter: Anil Saldhana
         Assigned To: Anil Saldhana
             Fix For: JBossAS-4.2.0.CR1


The user can configure principal to role mapping at the deployment level, for example in jboss-app.xml etc. The authorization engine should consider these for authorization decisions before proceeding towards the jaas generated roles.  Preference is always given to the RunAsIdentity.

The ejb layer as well as the web layer is affected by this.

-- 
This message is automatically generated by JIRA.
-
If you think it was sent incorrectly contact one of the administrators: http://jira.jboss.com/jira/secure/Administrators.jspa
-
For more information on JIRA, see: http://www.atlassian.com/software/jira

        



More information about the jboss-jira mailing list