[ 
https://issues.apache.org/jira/browse/JSPWIKI-131?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=12558275#action_12558275
 ] 

Andrew Jaquith commented on JSPWIKI-131:
----------------------------------------

I don't agree with the statement that it's "confusing for the user." Most 
end-users have no idea about the difference between authentication and 
authorization. But I agree it's confusing for security dorks. :)

This is pretty low priority, but I agree we should fix it. I'll take a look in 
my copious free time, and I advise others to also. Because most of the strings 
are internationalized now, we'll need to coordinate with the various committers.

> mixed up authenticated with authorized in several messages
> ----------------------------------------------------------
>
>                 Key: JSPWIKI-131
>                 URL: https://issues.apache.org/jira/browse/JSPWIKI-131
>             Project: JSPWiki
>          Issue Type: Task
>          Components: Authentication&Authorization, Default template, 
> Localization
>         Environment: n/a
>            Reporter: Florian Holeczek
>            Priority: Minor
>
> Several messages contain authenticated where authorized is meant, e.g. on the 
> info tab of a wiki page "Only authenticated users are allowed to delete 
> pages." occurs when a (maybe authenticated) user isn't authorized to delete 
> pages (same with other access rights).
> This is quite confusing for the user, but as easy to fix.

-- 
This message is automatically generated by JIRA.
-
You can reply to this email to add a comment to the issue online.

Reply via email to