hyperledger-iroha / iroha

Iroha - A simple, enterprise-grade decentralized ledger
https://wiki.hyperledger.org/display/iroha
Apache License 2.0
438 stars 280 forks source link

Granting permissions shouldn't be transitive? #5078

Open mversic opened 1 month ago

mversic commented 1 month ago

As far as I can see the privilege to grant/revoke permissions/roles is transitive. This means that if an account has a certain permission/role they can grant/revoke this permission to any other account. I don't think this is a correct model for permissioned system.