[katello-devel] Superadmin user

Lukas Zapletal lzap at redhat.com
Wed May 25 17:56:29 UTC 2011


Hello,

while working on some RBAC changes I am thinking if we can introduce new 
column for the users table called "admin" or "superadmin". If this flag 
is set the user is bypassed any authorization code.

Advantages:

Less static permissions for the first "admin" user.

Faster seed script.

We could also identify "superusers" in an easy way forbidding deletion 
of the last superuser.

Opinions?

-- 
Later,

  Lukas Zapletal | E32E400A
  RHN Satellite Engineering
  Red Hat Czech s.r.o. Brno




More information about the katello-devel mailing list