Uploaded image for project: 'Grouper'
  1. Grouper
  2. GRP-5397

Veto invalid permission assignments based on attribute name

    XMLWordPrintable

Details

    • New Feature
    • Resolution: Unresolved
    • Minor
    • None
    • None
    • API
    • None
    • Currently running 4.12.0

    Description

      Provide a way to veto permission assignments on a Group of type Role on a membership unless a particular attribute value is present to indicate which permission definition should apply, example:

      Group of Type role has attribute indicating that it should only be assign permissions from a particular permission attribute definition. If someone tried to assign a different attribute name from a different permission attribute definition, Grouper should veto the permission assignment.

      This feature should support the fact that more than one permission attribute definition may be applicable to to a role/membership assignment. However if not explicitly listed, it should reject all others

      Attachments

        Activity

          People

            chris.hyzer@at.internet2.edu Chris Hyzer (upenn.edu)
            jeffrey.crawford.2@at.internet2.edu Jeffrey Crawford
            Votes:
            0 Vote for this issue
            Watchers:
            1 Start watching this issue

            Dates

              Created:
              Updated: