Les, I am actually looking at implementing something similar. How does one make sure that principals are translated between two realms? Internally controlled realms can be more permissive and use UUID (or DBID) as the principal id. LDAP uses a DN (there could be several LDAP directories). Any thoughts on keeping this all from becoming a mess?
-- View this message in context: http://shiro-user.582556.n2.nabble.com/Multiple-Realms-tp4434653p6925397.html Sent from the Shiro User mailing list archive at Nabble.com.
