Skip to content

Use ThreadLocal to escalate privileges during access checks #6

@ThrawnCA

Description

@ThrawnCA

PrivilegedActor works, but requires a stack search to detect its existence, and must be carefully guarded to prevent misuse.

Using a ThreadLocal flag to determine when we are within a check would be more efficient and likely safer. WildFly security manager does this.

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions