[ http://jira.andromda.org/browse/BPM-253?page=history ] Work on BPM-253 stopped by Wouter Zoons
> CRUD security not respecting Actor <--> <<Manageable>> associations > ------------------------------------------------------------------- > > Key: BPM-253 > URL: http://jira.andromda.org/browse/BPM-253 > Project: Bpm4Struts Cartridge > Type: Bug > Components: CRUD > Versions: 3.1-RC1 > Environment: Linux (Ubuntu) JDK 1.5/1.4 MagicDraw 9.5 sp1 > Reporter: Tim Dysinger > Assignee: Wouter Zoons > Priority: Critical > Attachments: AndromdaQAModel.xmi > > Doesn't matter who is logged into the application when security is enabled. > Anyone can create/delete <<Manageable>> entities. This is a show stopper for > my application as I can't deploy it until it's fixed. We don't want regular > users creating or deleting sensitive <<Entity>> instances. ------------------------------------------------------- This SF.net email is sponsored by: Splunk Inc. Do you grep through log files for problems? Stop! Download the new AJAX search engine that makes searching your log files as easy as surfing the web. DOWNLOAD SPLUNK! http://sel.as-us.falkag.net/sel?cmd=lnk&kid=103432&bid=230486&dat=121642