Hi all, Following are the key points discussed on the $subject.
- Roles should be shared on primary user stores only. Secondary user-stores shouldn't support for shared roles. i.e. from the both UI and service should verify the role going to added to the primary user store. - Search base and other mandatory configurations availability should check. - An exception should be thrown when user try to add shared role but not enabled shared roles in the system. - For LDAP, shared roles are stored in both super-tenant->shared-roles->tenant's OU and tenants->shared-roles OU and store. - When finding roles for a given user, full qualified name of user should be passed(via Remote-usermanager) and should checked for the domain of the user. If the domain of the user belongs to another tenant it should lookup for that tenant's that user's shared roles. - Database schema should be further reviewed for optimizations. Please add if I have missed any. Thanks, On Wed, Jul 17, 2013 at 2:33 PM, Venura Kahawala <[email protected]> wrote: > This event has been changed. > more details > »<https://www.google.com/calendar/event?action=VIEW&eid=bWE0b25ua29naG03M2hkcGoyYXZwbGV0djggZGFyc2hhbmFAd3NvMi5jb20&tok=MTUjdmVudXJhQHdzbzIuY29tNzA3NDQ1ZDhhYTJlYzhiOTE1NWMwYzkzYTZmZDIxYjZkMGIzZDc2MA&ctz=Asia/Colombo&hl=en> > Custom Permissions UI and Shared Roles - Code Review > *When* > *Changed: *********Wed Jul 17, 2013 3:30pm – 4:30pm Colombo > *Where* > *Changed: *LK #58 5th Floor - Meeting room > (map<http://maps.google.lk/maps?q=LK+%2358+5th+Floor+-+Meeting+room&hl=en> > ) > *Calendar* > [email protected] > *Who* > • > [email protected] - organizer > • > Asela Pathberiya > • > Prabath Siriwardana > • > Suresh Attanayaka > • > Johann Nallathamby > • > Dulanja Liyanage > • > Pushpalanka Jayawardhana > • > Chamath Gunawardana > • > Darshana Gunawardana > • > [email protected] > > Going? > ***Yes<https://www.google.com/calendar/event?action=RESPOND&eid=bWE0b25ua29naG03M2hkcGoyYXZwbGV0djggZGFyc2hhbmFAd3NvMi5jb20&rst=1&tok=MTUjdmVudXJhQHdzbzIuY29tNzA3NDQ1ZDhhYTJlYzhiOTE1NWMwYzkzYTZmZDIxYjZkMGIzZDc2MA&ctz=Asia/Colombo&hl=en>- > Maybe<https://www.google.com/calendar/event?action=RESPOND&eid=bWE0b25ua29naG03M2hkcGoyYXZwbGV0djggZGFyc2hhbmFAd3NvMi5jb20&rst=3&tok=MTUjdmVudXJhQHdzbzIuY29tNzA3NDQ1ZDhhYTJlYzhiOTE1NWMwYzkzYTZmZDIxYjZkMGIzZDc2MA&ctz=Asia/Colombo&hl=en>- > No<https://www.google.com/calendar/event?action=RESPOND&eid=bWE0b25ua29naG03M2hkcGoyYXZwbGV0djggZGFyc2hhbmFAd3NvMi5jb20&rst=2&tok=MTUjdmVudXJhQHdzbzIuY29tNzA3NDQ1ZDhhYTJlYzhiOTE1NWMwYzkzYTZmZDIxYjZkMGIzZDc2MA&ctz=Asia/Colombo&hl=en> > * **more options > »<https://www.google.com/calendar/event?action=VIEW&eid=bWE0b25ua29naG03M2hkcGoyYXZwbGV0djggZGFyc2hhbmFAd3NvMi5jb20&tok=MTUjdmVudXJhQHdzbzIuY29tNzA3NDQ1ZDhhYTJlYzhiOTE1NWMwYzkzYTZmZDIxYjZkMGIzZDc2MA&ctz=Asia/Colombo&hl=en> > > Invitation from Google Calendar <https://www.google.com/calendar/> > > You are receiving this email at the account [email protected] because you > are subscribed for updated invitations on calendar [email protected]. > > To stop receiving these notifications, please log in to > https://www.google.com/calendar/ and change your notification settings > for this calendar. > -- Regards, * Darshana Gunawardana *Software Engineer WSO2 Inc.; http://wso2.com* E-mail: [email protected] **Mobile: +94718566859 *Lean . Enterprise . Middleware
_______________________________________________ Dev mailing list [email protected] http://wso2.org/cgi-bin/mailman/listinfo/dev
