[jboss-jira] [JBoss JIRA] (ELY-473) True credential forwarding support

Darran Lofthouse (JIRA) issues at jboss.org
Tue Apr 5 06:31:01 EDT 2016


     [ https://issues.jboss.org/browse/ELY-473?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ]

Darran Lofthouse updated ELY-473:
---------------------------------
    Fix Version/s: 1.1.0.Beta7
                       (was: 1.1.0.Beta6)


> True credential forwarding support
> ----------------------------------
>
>                 Key: ELY-473
>                 URL: https://issues.jboss.org/browse/ELY-473
>             Project: WildFly Elytron
>          Issue Type: Enhancement
>            Reporter: David Lloyd
>            Priority: Minor
>             Fix For: 1.1.0.Beta7
>
>
> Now we are ready for true support for forwarding credentials.
> The credentials should be associated with the SecurityIdentity itself.  A permission check is required to acquire them (maybe even both a code permission check *and* a user authorization check).
> We could support holding one credential per type+algorithm combination, or simply a list of credentials which can be queried.
> Authentication client API should be enhanced to search a security domain's current identity for a forwarding credential to use.



--
This message was sent by Atlassian JIRA
(v6.4.11#64026)


More information about the jboss-jira mailing list