As an admin I can still have rbac enabled with token_auth disabled
Extend logic of rbac to work with the token_auth disabled.
In this case, only admin will have the right to perform push operations. Pull operations will be opened to (1) any user, including anonymous or (2) to any valid user (TBD)
Please register to edit this issue