I just have a brief question about user security in FarCry.

Basically, I've set up a new policy group which mirrors that of Publishers
(i.e. has the same permission set), for the purpose of restricting a user to
one branch of the site nav tree.

Anyway, this policy group includes 'object archive tab' permission, to allow
them to rollback to previous versions, as I want them to have this ability
(within their branch of the tree). The only problem is, the archive tab and
subsequently the 'rollback' link appears regardless of what section of the
tree the user is in (i.e. the tab appears in all or nothing).

Looking at the code (farcry_core\admin\edittabArchive.cfm), it doesn't make
any consideration of the user's content management permissions within that
part of the tree - it simply checks for 'object archive tab' permission.

My question is, have I configured the policy incorrectly, or should there be
a further check for rolling back previous versions?

--

Quentin Zervaas
Web Developer

MITOUSA.
Web + Interface Architects

E:// [EMAIL PROTECTED]
W:// www.mitousa.com



---
You are currently subscribed to farcry-dev as: [EMAIL PROTECTED]
To unsubscribe send a blank email to [EMAIL PROTECTED]

MXDU2004 + Macromedia DevCon AsiaPac + Sydney, Australia
http://www.mxdu.com/ + 24-25 February, 2004

Reply via email to