Uploaded image for project: 'WildFly'
  1. WildFly
  2. WFLY-490 Domain Management Role Based Access Control
  3. WFLY-2063

Remove support for use-realm-roles in role mapping implementation,


    • Icon: Sub-task Sub-task
    • Resolution: Done
    • Icon: Critical Critical
    • 8.0.0.Beta1
    • None
    • Management, Security
    • None

      Is has been agreed that where the realms used for authentication and the loading of groups contain groups with the same names as the role names that a 1:1 role mapping should still be defined rather than providing a general short cut: -

                      <role name="Monitor">
                              <group name="Monitor"/>

      Only the configuration to enable the short cut is to be removed, the internal implementation will be left in place in-case demand is identified to re-add it.

            darran.lofthouse@redhat.com Darran Lofthouse
            darran.lofthouse@redhat.com Darran Lofthouse
            0 Vote for this issue
            4 Start watching this issue