Important
You are browsing documentation for version 5.1 of OroCommerce, supported until March 2027. Read the documentation for the latest LTS version to get up-to-date information.
See our Release Process documentation for more information on the currently supported and upcoming releases.
Security
OroSecurityBundle extends Symfony security capabilities to enable a role-based ACL security system in the Oro applications.
Developers can set up access restrictions for entities and non-entity-related actions using DOC-block annotations and YAML configuration files.
Application administrators get a UI to configure entity-specific permissions for particular user roles based on entity ownership.
Read more in the following topics:
OroSecurityBundle Features
Custom and Configurable Permissions