higlass-docker icon indicating copy to clipboard operation
higlass-docker copied to clipboard

superuser as admin - design for better authorization model

Open brianrepko opened this issue 1 year ago • 0 comments

My understanding is when you create a superuser it basically creates a django admin account. For HiGlass this is used to (1) create other users, (2) maintain views, and (3) maintain projects. But I'm concerned about the security profile here wrt to django configuration in general and security maintenance vs application maintenance (projects and views). This needs a better authentication / authorization mechanism particularly for open internet usage.

brianrepko avatar Nov 04 '22 21:11 brianrepko