On Tue, 2006-09-26 at 17:50 +0200, Jörn Nettingsmeier wrote:
> before we start a REOPEN war on bugzilla, let's discuss this here first.
> 
> imho an exception caused by a normal gui operation is always a bug.
> imnsho a "deny" credential for the role "edit" that leads to a loss of
> "visit" for the user admin is a blocker bug.

The thing is a user can have more then one role. Lenya e.g. has the role
"edit, admin, visit", now we test whether we find credentials for this
roles, if there is a credential (with high priority) which deny access
for editor then lenya get locked out. To allow lenya and not any other
editor have a look at our documentation. 

salu2

> 
> [EMAIL PROTECTED] wrote:
> > ------- Additional Comments From [EMAIL PROTECTED]  2006-09-26
> > 15:36 ------- If you switch the rights then it will work again.
> 
> please elaborate.
> 
> > I do not consider this a bug, but a feature. Proofs that the ac is
> > working in locking out the ones that you define.
> > 
> > If you did not got locked out then we need to worry.
> 
> either you have totally misread my bug report or i'm totally at sea
> about how ac is supposed to work.
> 
> 

-- 
Thorsten Scherler
COO Spain
Wyona Inc.  -  Open Source Content Management  -  Apache Lenya
http://www.wyona.com                   http://lenya.apache.org
[EMAIL PROTECTED]                [EMAIL PROTECTED]


---------------------------------------------------------------------
To unsubscribe, e-mail: [EMAIL PROTECTED]
For additional commands, e-mail: [EMAIL PROTECTED]

Reply via email to