deshpand commented on issue #3312: Proposal: make single sign on and other 
auth/authn easier by removing Flask AppBuilder
URL: 
https://github.com/apache/incubator-superset/issues/3312#issuecomment-382481725
 
 
   I have researching both superset and airflow for adoption at my enterprise 
(thanks mistercrunch for your open source contributions!) and I know airflow is 
also planning to use FAB for security.  I am just beginning to look at the 
security aspects and I have some similar thoughts/needs as shared by laranzu.
   
   The gist code was very helpful to get me started but I may not be able to 
have a database at the backend, like FAB seems to presume.  
   
   I currently have a flask based application where I get a SamlToken from SSO 
provider which gives me user id, AD groups the user belongs to.  From the AD 
groups, I construct roles (that I persist in session/cookie) and use Flask 
Principal and provide role based access to routes.  I am hoping for a similar 
mechanism with a superset_config where I override the bare minimum classes.
   
   I hope I am at least making sense!  Please do let me know of additional 
resources, possibly including any work by laranzu that he may want to share.

----------------------------------------------------------------
This is an automated message from the Apache Git Service.
To respond to the message, please log on GitHub and use the
URL above to go to the specific comment.
 
For queries about this service, please contact Infrastructure at:
[email protected]


With regards,
Apache Git Services

Reply via email to