The Fedora 4 Authentication (AuthN) and Authorization (AuthZ) framework is designed to be flexible and extensible, to allow any organization to configure access to suit its needs.

The following sections explain the Fedora 4 AuthN/Z framework, and provide instructions for configuring some out-of-the-box access controls.

For clarity's sake, a distinction is made between Authentication and Authorization:


Servlet Container Configuration

Authorization Delegates

Access Roles Module

Basic Role-based Authorization Delegate

XACML Authorization Delegate

Bypassing Authorization