[
https://issues.apache.org/jira/browse/JSPWIKI-131?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=12558275#action_12558275
]
Andrew Jaquith commented on JSPWIKI-131:
----------------------------------------
I don't agree with the statement that it's "confusing for the user." Most
end-users have no idea about the difference between authentication and
authorization. But I agree it's confusing for security dorks. :)
This is pretty low priority, but I agree we should fix it. I'll take a look in
my copious free time, and I advise others to also. Because most of the strings
are internationalized now, we'll need to coordinate with the various committers.
> mixed up authenticated with authorized in several messages
> ----------------------------------------------------------
>
> Key: JSPWIKI-131
> URL: https://issues.apache.org/jira/browse/JSPWIKI-131
> Project: JSPWiki
> Issue Type: Task
> Components: Authentication&Authorization, Default template,
> Localization
> Environment: n/a
> Reporter: Florian Holeczek
> Priority: Minor
>
> Several messages contain authenticated where authorized is meant, e.g. on the
> info tab of a wiki page "Only authenticated users are allowed to delete
> pages." occurs when a (maybe authenticated) user isn't authorized to delete
> pages (same with other access rights).
> This is quite confusing for the user, but as easy to fix.
--
This message is automatically generated by JIRA.
-
You can reply to this email to add a comment to the issue online.