Uploaded image for project: 'Solr'
  1. Solr
  2. SOLR-15771

bin/solr auth enable should model best practices for security.json

    XMLWordPrintableJSON

Details

    Description

      During discussion of SOLR-15770, the idea came up that the bin/solr auth enable command should model a best practices setup of security.json, with the idea that it's sometimes easier to show versus tell people how to setup security.

       
      My wish for that default security.json

      • Add three users user , admin and superadmin
      • Add three roles with the same names
      • Map every permission in the system to one or more of those roles
      • End the chain with an all permission connected to the superadmin role

      Bonus points would be to have the security.json be a template file read in by AuthTool instead of a hard to edit/understand String generated in Java. Then we could also reference this file in the Ref Guide (the way we do with some SolrJ chunks of code) and provide more detailed explanation of thinking in the Ref Guide.

      Attachments

        Issue Links

          Activity

            People

              epugh Eric Pugh
              epugh Eric Pugh
              Votes:
              0 Vote for this issue
              Watchers:
              4 Start watching this issue

              Dates

                Created:
                Updated:
                Resolved:

                Time Tracking

                  Estimated:
                  Original Estimate - Not Specified
                  Not Specified
                  Remaining:
                  Remaining Estimate - 0h
                  0h
                  Logged:
                  Time Spent - 5h 10m
                  5h 10m