users@glassfish.java.net

[gf-users] Re: Multiple auth realms for DAS

From: Jason Lee <jason_at_steeplesoft.com>
Date: Tue, 14 Apr 2015 13:16:01 -0500

On 4/14/15 11:14 AM, Liedy, Jonathan wrote:
> Hey all,
>
> I’m working on upgrading our environment from GF2 to GF4. I’m also
> trying to add a little bit more visibility into the DAS for the
> developers. I’ve got the admin-realm configured and working with
> LDAP. Is there a role or something I can configure to give a group
> read-only access to the asadmin GUI? Giving them R/W access is kind
> of a no-go as we’re trying to reduce the monkey in the monkey factor.
>
The admin console does not support RBAC, unfortunately. It's been on the
to do list, but time has never been allotted to it. :|
>
> Also, is there a way to use both file-based and LDAP-based auths for
> the admin-realm?
>
My guess is that would require a custom realm.

-- 
Jason Lee
http://cubtracker.com
http://blogs.steeplesoft.com
http://twitter.com/jasondlee
http://blogs.steeplesoft.com/+
http://blogs.steeplesoft.com/in