On Fri, Oct 25, 2013 at 7:53 PM, Kevin Smith <[email protected]>wrote:

> I'm afraid GWC doesn't pay attention to GS layer security.  The GWC layers
> are their own objects, aware of but distinct from the GeoServer layers.  So
> applying the GS security model to those layers is just not a feature that
> GWC currently supports.  One odd aspect is that layer security will be
> applied to attempts to get a new tile from the back end on a cache miss,
> but once an authorized user has looked at the tile, it will be cached and
> available for everyone.
>
> You can secure GWC as a whole service the same way you can WMS or WFS
> though. So if you just have one group of users who can access everything,
> secure the GWC service.  Otherwise, don't enable caching for any layer
> which needs to be secure.
>

Actually, we have had this pull request open for a while that should
integrate data security
with GWC, see here:
https://github.com/geoserver/geoserver/pull/341

Kevin, wondering if you, or Gabriel, could have a look? I'm going to add
some comments myself

Cheers
Andrea

-- 
==
Our support, Your Success! Visit http://opensdi.geo-solutions.it for more
information.
==

Ing. Andrea Aime
@geowolf
Technical Lead

GeoSolutions S.A.S.
Via Poggio alle Viti 1187
55054  Massarosa (LU)
Italy
phone: +39 0584 962313
fax: +39 0584 1660272
mob: +39  339 8844549

http://www.geo-solutions.it
http://twitter.com/geosolutions_it

-------------------------------------------------------
------------------------------------------------------------------------------
October Webinars: Code for Performance
Free Intel webinars can help you accelerate application performance.
Explore tips for MPI, OpenMP, advanced profiling, and more. Get the most from 
the latest Intel processors and coprocessors. See abstracts and register >
http://pubads.g.doubleclick.net/gampad/clk?id=60135991&iu=/4140/ostg.clktrk
_______________________________________________
Geoserver-users mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/geoserver-users

Reply via email to