Security 

OroSecurityBundle extends Symfony security capabilities to enable a role-based ACL security system in the Oro applications.

Developers can set up access restrictions for entities and non-entity-related actions using DOC-block annotations and YAML configuration files.

Application administrators get a UI to configure entity-specific permissions for particular user roles based on entity ownership.

Read more in the following topics: