Re: Role based access control discussion

From: Dave Page <dpage(at)pgadmin(dot)org>
To: Aditya Toshniwal <aditya(dot)toshniwal(at)enterprisedb(dot)com>
Cc: pgadmin-hackers <pgadmin-hackers(at)postgresql(dot)org>
Subject: Re: Role based access control discussion
Date: 2025-03-13 10:06:06
Message-ID: CA+OCxowN3uKQLWTf6F1j7_Zo_72CVj+jue4XjOdnRp3LHxH7Qw@mail.gmail.com
Views: Whole Thread | Raw Message | Download mbox | Resend email
Thread:
Lists: pgadmin-hackers

Hi

On Thu, 13 Mar 2025 at 06:16, Aditya Toshniwal <
aditya(dot)toshniwal(at)enterprisedb(dot)com> wrote:

> Hi Hackers,
>
> I have started looking into a feature where users have requested for
> custom roles. The roles can then be assigned permissions. Here's what I
> think how it can be done:
>
> 1. Create a framework for roles based access control.
> 2. Allow adding/editing/deleting roles from UI.
> 3. User management dialog can be converted to a tab to get extra space
> for other stuff.
> 4. pgAdmin can have some predefined permissions. The permissions can
> then be used to validate at the API levels and UI.
> 5. New permissions cannot be added from UI as it will require code
> changes. They can be added based on user requests.
> 6. Admin can allow these permissions to the roles and roles can be
> assigned to users.
> 7. Permissions will be used to
> 8. Admin role remains static with no changes allowed.
>
> Let me know your thoughts on this. If everything looks good then I will
> proceed.
>

What permissions would we support initially?

--
Dave Page
pgAdmin: https://www.pgadmin.org
PostgreSQL: https://www.postgresql.org
pgEdge: https://www.pgedge.com

In response to

Responses

Browse pgadmin-hackers by date

  From Date Subject
Next Message Aditya Toshniwal 2025-03-13 10:25:25 Re: Role based access control discussion
Previous Message Aditya Toshniwal 2025-03-13 06:16:08 Role based access control discussion