[ 
https://issues.apache.org/jira/browse/NIFI-2730?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=15462978#comment-15462978
 ] 

Nicholas Hughes commented on NIFI-2730:
---------------------------------------

Require the ability to assign arbitrary access permissions to the Anonymous 
user when unauthenticated users hit the SSL secured UI. This functionality 
would be similar to the default roles assigned to Anonymous access in the most 
recent 0.x versions. Example: The web UI is SSL secured, but a user not 
presenting a certificate can have read-only access to the entire graph and 
maybe access to stop/start things inside of X process group. Permissions 
assigned to Anonymous should be decided by the Admin.

> File Authorizer - Support configurable anonymous access
> -------------------------------------------------------
>
>                 Key: NIFI-2730
>                 URL: https://issues.apache.org/jira/browse/NIFI-2730
>             Project: Apache NiFi
>          Issue Type: Improvement
>          Components: Core Framework, Extensions
>            Reporter: Matt Gilman
>             Fix For: 1.1.0
>
>
> In 1.0.0 a delegated authorization model is used to make access decisions. 
> Whether or not an anonymous user is allowed would be a function of the 
> authorizer.
> Additionally, may need a framework property to indicate if we want to 
> authenticate anonymous users.



--
This message was sent by Atlassian JIRA
(v6.3.4#6332)

Reply via email to