Is the credential group in Spring Security 3 just a shortcut to grouping multiple roles into one?

Each forum or tutorial that I can find affects groups and groups in different ways. Link for Spring Security indicates that groups are just a shortcut to group multiple permissions (roles) into one. For example, the Administrators group can have ROLE_USER, ROLE_MANAGE_USER, while the Users group can only have ROLE_USER. Is this the right way to think about this?

+5
source share
1 answer

Yes, this is the right way to think about it - groups are just a shortcut to combine multiple GrantedAuthority values ​​into a logical group.

ACL Spring Security, , .

, !

+7

All Articles