duanhuang1967 2015-01-25 23:39
浏览 28

在确定单个对象的访问权限时,使用Symfony ACL而不是角色是否重要?

In symfony2, I have come to a point where I need to create dynamic roles, not only to manage specific general rights, but also gain rights to perform actions on specific objects.

Here comes ACL, shortly described in the doc. However, I have come to understand that :

  1. It lacks the capability to update ACEs when a user changes username : https://github.com/symfony/symfony/issues/5787
  2. ACL will be moved out from symfony core as it might not be well maintened: https://github.com/symfony/symfony/issues/8848

So is that really an issue not to use ACL and instead create a ROLE or a database relationship for every object which access should be filtered ?

  • 写回答

0条回答 默认 最新

    报告相同问题?

    悬赏问题

    • ¥60 求一个简单的网页(标签-安全|关键词-上传)
    • ¥35 lstm时间序列共享单车预测,loss值优化,参数优化算法
    • ¥15 基于卷积神经网络的声纹识别
    • ¥15 Python中的request,如何使用ssr节点,通过代理requests网页。本人在泰国,需要用大陆ip才能玩网页游戏,合法合规。
    • ¥100 为什么这个恒流源电路不能恒流?
    • ¥15 有偿求跨组件数据流路径图
    • ¥15 写一个方法checkPerson,入参实体类Person,出参布尔值
    • ¥15 我想咨询一下路面纹理三维点云数据处理的一些问题,上传的坐标文件里是怎么对无序点进行编号的,以及xy坐标在处理的时候是进行整体模型分片处理的吗
    • ¥15 CSAPPattacklab
    • ¥15 一直显示正在等待HID—ISP