I like this idea as well. Perhaps ns_perm could be slightly rewritten to just be another auth filter when loaded.
On Tuesday 09 April 2002 06:18 pm, you wrote: > +---------- On Apr 9, Zoran Vasiljevic said: > > So what should I do ? > > It seems to me that you would be best served by a module, in either Tcl > or C, that runs as a preauth or postauth filter and implements Basic and > Digest authentication and IP/hostname checking. I don't see much point > in trying to work with nsperm as is, though its code would perhaps be a > useful starting point. > > I don't see a point in modifying the core to also parse Authentication: > Digest headers. I think Ns_SetRequestAuthorizeProc should be ripped > out and replaced with a new filter type, "auth". Auth filters should > simply be run after preauth filters and before postauth filters. I don't > see any advantage in the current, completely separate mechanism for > authorization.
