bengler / checkpoint

Centralized identity store and authentication broker for web applications. It supports a number of authentication mechanisms and is provided via a http-interface.
MIT License
31 stars 2 forks source link

Implement strict validations for cross-realm violations #5

Closed kytrinyx closed 12 years ago

kytrinyx commented 12 years ago

You should never ever be allowed to do stuff in a realm that your identity doesn't belong to, unless you are specifically god in the 'root' realm.

skogsmaskin commented 12 years ago

https://github.com/bengler/checkpoint/commit/77122eb2d3c82c6fa4901f4b65d25e2930b7be22