[ 
https://issues.apache.org/jira/browse/CASSANDRA-7653?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel
 ]

Mike Adamson updated CASSANDRA-7653:
------------------------------------

    Description: 
The current authentication model supports granting permissions to individual 
users. While this is OK for small or medium organizations wanting to implement 
authorization, it does not work well in large organizations because of the 
overhead of having to maintain the permissions for each user.

Introducing roles into the authentication model would allow sets of permissions 
to be controlled in one place as a role and then the role granted to users. 
Roles should also be able to be granted to other roles to allow hierarchical 
sets of permissions to be built up.

  was:
The current authentication model supports granting permissions to individual 
users. While this is OK for small or medium organizations wanting to implement 
authorization, it does not work well in large organizations because of the 
overhead of having to maintain the permissions for each user.

Introducing roles into the authentication model would sets of permissions to be 
controlled in one place and then the role granted to users. Roles should also 
be able to be granted to other roles to allow hierarchical sets of permissions 
to be built up.


> Add role based access control to Cassandra
> ------------------------------------------
>
>                 Key: CASSANDRA-7653
>                 URL: https://issues.apache.org/jira/browse/CASSANDRA-7653
>             Project: Cassandra
>          Issue Type: New Feature
>          Components: Core
>            Reporter: Mike Adamson
>             Fix For: 3.0
>
>         Attachments: 7653.patch
>
>
> The current authentication model supports granting permissions to individual 
> users. While this is OK for small or medium organizations wanting to 
> implement authorization, it does not work well in large organizations because 
> of the overhead of having to maintain the permissions for each user.
> Introducing roles into the authentication model would allow sets of 
> permissions to be controlled in one place as a role and then the role granted 
> to users. Roles should also be able to be granted to other roles to allow 
> hierarchical sets of permissions to be built up.



--
This message was sent by Atlassian JIRA
(v6.2#6252)

Reply via email to