I'm currently not happy with the way we're doing our security.
What I'd ideally like to see is some type of plug-and-play claims based model a la membership and role providers, but for claims.
How do you/your teams handle claims based security at the moment? How would you like to see it managed? We're thinking of developing a framework and publishing it on codeplex as a company sponsored open source project if it's semi-decent, so wishlist away!
Why go against tradition when we can admit defeat, live in decline, be the victim of our own design?
http://dotnet.org.za/calmyourself