Thanks, definitely has a few more
details I was having trouble finding. No worries
about the late review. I understand everyone is
busy.
Just to make sure, @RolesAllowed for
CDI was not actually implemented, correct? The
slides are simply suggesting it could be implemented
by the application developer?
Hi Reza,
I'm sorry I'm late to respond. I saw you
already published and promoted your slides but
I'll still comment anyway with some new info.
I wanted to give an update on the Security
slide, where it mentions "Multiple authentication
mechanisms" and "Authentication mechanism per
URL". This is already possible in Security 4.0,
which will be in EE 11. More info in this in my
comment on this github issue, with an example
usage:
https://github.com/jakartaee/security/issues/188#issuecomment-2241588291.
I think that all the rest is more or less up to
date. I see that on the same slide you often mix
features that are going to be in EE 11 and those
that were discussed but didn't make it in and are
still considered for future versions. It's
probably intentional and the shownotes clarify
which features are in and which are not. It might
be a bit confusing for people that only look at
the slides though.