Uploaded image for project: 'Kogito'
  1. Kogito
  2. KOGITO-4962

Use SecurityContext instead of passing user/group info in URLs

XMLWordPrintable

    • 5
    • False
    • False
    • Undefined
    • 2021 Week 16-18 (from Apr 19), 2021 Week 19-21 (from May 10), 2021 Week 22-24 (from May 31), 2021 Week 34-36 (from Aug 23), 2021 Week 37-39 (from Sep 13), 2021 Week 40-42 (from Oct 4)

      Currently authentication data for processes is passed via URL query parameters (?user=... ?groups=...); we should instead use Quarkus' SecurityContext and Spring's equivalent; possibly introducing a thin abstraction.

      By using a common abstraction we would make it available to other components of the platform such as rules, decisions etc

            tdolphin-1 Tiago Dolphine
            evacchi Edoardo Vacchi (Inactive)
            Marian Macik Marian Macik
            Marian Macik Marian Macik
            Votes:
            0 Vote for this issue
            Watchers:
            3 Start watching this issue

              Created:
              Updated:
              Resolved: