deshpand commented on issue #3312: Proposal: make single sign on and other auth/authn easier by removing Flask AppBuilder URL: https://github.com/apache/incubator-superset/issues/3312#issuecomment-382481725 I have researching both superset and airflow for adoption at my enterprise (thanks mistercrunch for your open source contributions!) and I know airflow is also planning to use FAB for security. I am just beginning to look at the security aspects and I have some similar thoughts/needs as shared by laranzu. The gist code was very helpful to get me started but I may not be able to have a database at the backend, like FAB seems to presume. I currently have a flask based application where I get a SamlToken from SSO provider which gives me user id, AD groups the user belongs to. From the AD groups, I construct roles (that I persist in session/cookie) and use Flask Principal and provide role based access to routes. I am hoping for a similar mechanism with a superset_config where I override the bare minimum classes. I hope I am at least making sense! Please do let me know of additional resources, possibly including any work by laranzu that he may want to share.
---------------------------------------------------------------- This is an automated message from the Apache Git Service. To respond to the message, please log on GitHub and use the URL above to go to the specific comment. For queries about this service, please contact Infrastructure at: [email protected] With regards, Apache Git Services
