Thank you. That sounds good - are we sure to get no leakage with this approach?
I'd be indexing personal information which must not be delivered without authentication. The solr instance is front-ended by bedework which can handle the auth and adding a query term. > IMO it would be a better (from Solr's perspective) to handle the security > w/ the application code. Each query could include a "?fq=userID:12345..." > which would limit results to only what that user is allowed to see. -- View this message in context: http://lucene.472066.n3.nabble.com/Many-Cores-with-Solr-tp3161889p3986675.html Sent from the Solr - User mailing list archive at Nabble.com.