Re: Model of permissions for Ignite 3

2021-04-11 Thread Alexei Scherbakov
+1 We should rethink the security model in Ignite 3 and have a default RBAC based implementation, from my point of view. By default, no code should be written to enable and use it. Let's schedule a meeting and discuss the details. вс, 11 апр. 2021 г. в 19:43, Denis Garus : > Andrey, Alexey than

Re: Model of permissions for Ignite 3

2021-04-11 Thread Denis Garus
Andrey, Alexey thank you for the feedback! > I suggest decoupling authentication from authorization Yes, it would be useful. Existing SecuritySubject and SecurityContext require reworking. > I think it would be great to have a default implementation of user-role-permission model Completely agre