Thank you.

That sounds good - are we sure to get no leakage with this approach?

I'd be indexing personal information which must not be delivered without
authentication.

The solr instance is front-ended by bedework which can handle the auth and
adding a query term.

> IMO it would be a better (from Solr's perspective) to handle the security
> w/ the application code.  Each query could include a "?fq=userID:12345..."
> which would limit results to only what that user is allowed to see.



--
View this message in context: 
http://lucene.472066.n3.nabble.com/Many-Cores-with-Solr-tp3161889p3986675.html
Sent from the Solr - User mailing list archive at Nabble.com.

Reply via email to