Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

...

Release

Item

Description

2.0

Lite UI enhancement

Support easier to use end-user UI components in addition to the existing administrative UI. Initial component, for managing membership of a single group, is in v1.5.

In v2.0, add simple management of attributes, roles, and permissions.

1.6+

Grouper Web Services enhancement

Continue adding capabilities to meet requirements from the field.

Implement versioning of the WS interfaces.

1.6-2.0+

Notification of changes

In v1.6, build on the initial implementation of incremental group, membership, and folder (or namespace) change notifications in v1.5 to provide notification based on flattened group membership to more efficiently enable relying parties to maintain membership lists. Also in v1.6, partner with a deployment using an asynchronous messaging infrastructure (perhaps an ESB) to drive enhancement of the toolkit for that style of data integration.

For v2.0, add flattened membership notification.
Somewhere along the line, add ability for users to register to be notified of changes to specified objects.

1.6-2.1

Ldappc NG

Complete work on the new Ldappc, built from the Shibboleth Attribute Resolver and SPML components. Integrate with Grouper notifications for asynchronous, incremental updating in addition to periodic batch style updating. Includes specific support for Active Directory. Produce a packaging of Ldappc NG as a Shibboleth DataConnector for Grouper.

Real-time and incremental provisioning will be added in v2.1.

Consider adding an SPML input to grouper capability.

2.0

Point in Time Audit

Query the state of the groups registry at a prior point in time.

2.0

Rules

Declarative triggers that perform changes to the Grouper Registry.

2.0

Federated group membership and privileges

Built-in support for memberships and Grouper privileges to be assigned to federated identities.

2.0

Federated group management

Enable groups from autonomous Grouper instances to be referenced by and incorporated into another Grouper instance.

2.0

PDP

The Grouper permissions web service takes into account allow/disallow and limits to give the decision of access back to the requestor

post-2.0

uPortal-grouper integration

Complete Phase II deliverables. Time frame for Phase III deliverables still to be determined in concert with uPortal team.

Not yet assigned

Dynamic group membership

Dynamically maintain groups and memberships based on conditions external to Grouper. The Loader does this for RDBMS sources using a combination of SQL and Loader-specific configuration. New capabilities to be developed will include linking groups and memberships to LDAP-resident attributes.

Not yet assigned

GrouperWS high availability

In-built load-balancing to enable highly available read-only access to the Groups Registry via web services.

2.2

New Grouper UI

Grouper has its administrative UI, the Lite UI, and as of v2.0, additional Lite-like UIs for attribute, role, and permission management. Further, several substantial UIs have been created by Grouper users, usually designed to meet needs in a specifically identified context. This roadmap item is aimed at addressing how Grouper should engage, support, or borrow from these efforts to provide UI capabilities that are closer to contextual needs more often than at present.

Initial substantially complete new UI to be included in v2.2. See planning page.

Not yet assigned

Unix GID management

Built-in support for managing unix GIDs. Probably by building on community contributions.

Not yet assigned

COmanage freshener

Incorporate Grouper Lite UI, Ldappc-ng, and other capabilities into COmanage.

On-going

Community contributions

Solicit and publicize community contributions of extensions and complements to Grouper.

...