-
Notifications
You must be signed in to change notification settings - Fork 78
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Use privileges over roles in security scaffolding #546
Comments
I think the title of this issue got it backwards.. :) |
You're right, @grtjn! fixed |
Removing from 4.3, but will get to this some day. PR would be appreciated! |
I'm short of spare time at the moment, but who knows. Do you have pointers to relevant code? |
I like doing this, as privileges really are the way to go. Can rethink the generated roles as well. No possibility for a breaking change here as the files are generated and then a user is free to modify them however they see fit. |
Describe the RFE
Exercising Privilege to Restrict Content talks about using privileges (like http://marklogic.com/xdmp/privileges/rest-reader) over roles (like rest-reader). I believe that's generally accepted guidance. Assuming so, I propose changing ml-gradle's scaffolding to set up the default roles to use privileges over roles.
The text was updated successfully, but these errors were encountered: