[jira] [Updated] (SLING-6130) Restrict access for principal everyone and move configuration to repoinit
[ https://issues.apache.org/jira/browse/SLING-6130?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ] Oliver Lietz updated SLING-6130: Fix Version/s: Karaf Launchpad Integration Tests (Oak Tar) 0.0.2 Karaf Configs 0.2.0 Karaf Integration Tests 0.2.0 > Restrict access for principal everyone and move configuration to repoinit > - > > Key: SLING-6130 > URL: https://issues.apache.org/jira/browse/SLING-6130 > Project: Sling > Issue Type: Improvement > Components: JCR, Karaf, Launchpad, Oak >Affects Versions: JCR Oak Server 1.1.0 >Reporter: Oliver Lietz >Assignee: Oliver Lietz >Priority: Major > Labels: Sling-11-ReleaseNotes, security > Fix For: JCR Oak Server 1.1.4, Karaf Integration Tests 0.2.0, > Karaf Configs 0.2.0, Karaf Launchpad Integration Tests (Oak Tar) 0.0.2, > Starter 11 > > Attachments: error.log > > > Currently {{everyone}} can {{read}} from {{/}} (configured in > {{OakSlingRepositoryManager}}). > Access for {{everyone}} should be restricted: > * {{read}} should be restricted to {{/content}} > * configuration of principals and ACLs should be done with _repoinit_ > # -Change path from {{/}} to {{/content}} in {{OakSlingRepositoryManager}}- > (/) (-[r1764259|https://svn.apache.org/r1764259]-) > # Fix modules (samples) relying on _unrestricted_ {{read}} access > # Move configuration of ACLs to _repoinit_ (/) > discussion on > [dev@|https://lists.apache.org/thread.html/36908ed62ac93c63cad594a897f8abceb93f08da5bcea30dbce98e58@%3Cdev.sling.apache.org%3E] -- This message was sent by Atlassian JIRA (v7.6.3#76005)
[jira] [Updated] (SLING-6130) Restrict access for principal everyone and move configuration to repoinit
[ https://issues.apache.org/jira/browse/SLING-6130?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ] Oliver Lietz updated SLING-6130: Component/s: Launchpad Karaf > Restrict access for principal everyone and move configuration to repoinit > - > > Key: SLING-6130 > URL: https://issues.apache.org/jira/browse/SLING-6130 > Project: Sling > Issue Type: Improvement > Components: JCR, Karaf, Launchpad, Oak >Affects Versions: JCR Oak Server 1.1.0 >Reporter: Oliver Lietz >Assignee: Oliver Lietz >Priority: Major > Labels: Sling-11-ReleaseNotes, security > Fix For: JCR Oak Server 1.1.4, Karaf Integration Tests 0.2.0, > Karaf Configs 0.2.0, Karaf Launchpad Integration Tests (Oak Tar) 0.0.2, > Starter 11 > > Attachments: error.log > > > Currently {{everyone}} can {{read}} from {{/}} (configured in > {{OakSlingRepositoryManager}}). > Access for {{everyone}} should be restricted: > * {{read}} should be restricted to {{/content}} > * configuration of principals and ACLs should be done with _repoinit_ > # -Change path from {{/}} to {{/content}} in {{OakSlingRepositoryManager}}- > (/) (-[r1764259|https://svn.apache.org/r1764259]-) > # Fix modules (samples) relying on _unrestricted_ {{read}} access > # Move configuration of ACLs to _repoinit_ (/) > discussion on > [dev@|https://lists.apache.org/thread.html/36908ed62ac93c63cad594a897f8abceb93f08da5bcea30dbce98e58@%3Cdev.sling.apache.org%3E] -- This message was sent by Atlassian JIRA (v7.6.3#76005)
[jira] [Updated] (SLING-6130) Restrict access for principal everyone and move configuration to repoinit
[ https://issues.apache.org/jira/browse/SLING-6130?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ] Oliver Lietz updated SLING-6130: Labels: Sling-11-ReleaseNotes security (was: security) > Restrict access for principal everyone and move configuration to repoinit > - > > Key: SLING-6130 > URL: https://issues.apache.org/jira/browse/SLING-6130 > Project: Sling > Issue Type: Improvement > Components: JCR, Oak >Affects Versions: JCR Oak Server 1.1.0 >Reporter: Oliver Lietz >Assignee: Oliver Lietz >Priority: Major > Labels: Sling-11-ReleaseNotes, security > Fix For: JCR Oak Server 1.1.4, Starter 11 > > Attachments: error.log > > > Currently {{everyone}} can {{read}} from {{/}} (configured in > {{OakSlingRepositoryManager}}). > Access for {{everyone}} should be restricted: > * {{read}} should be restricted to {{/content}} > * configuration of principals and ACLs should be done with _repoinit_ > # -Change path from {{/}} to {{/content}} in {{OakSlingRepositoryManager}}- > (/) (-[r1764259|https://svn.apache.org/r1764259]-) > # Fix modules (samples) relying on _unrestricted_ {{read}} access > # Move configuration of ACLs to _repoinit_ (/) > discussion on > [dev@|https://lists.apache.org/thread.html/36908ed62ac93c63cad594a897f8abceb93f08da5bcea30dbce98e58@%3Cdev.sling.apache.org%3E] -- This message was sent by Atlassian JIRA (v7.6.3#76005)
[jira] [Updated] (SLING-6130) Restrict access for principal everyone and move configuration to repoinit
[ https://issues.apache.org/jira/browse/SLING-6130?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ] Oliver Lietz updated SLING-6130: Fix Version/s: JCR Oak Server 1.1.4 Starter 11 > Restrict access for principal everyone and move configuration to repoinit > - > > Key: SLING-6130 > URL: https://issues.apache.org/jira/browse/SLING-6130 > Project: Sling > Issue Type: Improvement > Components: JCR, Oak >Affects Versions: JCR Oak Server 1.1.0 >Reporter: Oliver Lietz >Assignee: Oliver Lietz >Priority: Major > Labels: security > Fix For: JCR Oak Server 1.1.4, Starter 11 > > Attachments: error.log > > > Currently {{everyone}} can {{read}} from {{/}} (configured in > {{OakSlingRepositoryManager}}). > Access for {{everyone}} should be restricted: > * {{read}} should be restricted to {{/content}} > * configuration of principals and ACLs should be done with _repoinit_ > # -Change path from {{/}} to {{/content}} in {{OakSlingRepositoryManager}}- > (/) (-[r1764259|https://svn.apache.org/r1764259]-) > # Fix modules (samples) relying on _unrestricted_ {{read}} access > # Move configuration of ACLs to _repoinit_ (/) > discussion on > [dev@|https://lists.apache.org/thread.html/36908ed62ac93c63cad594a897f8abceb93f08da5bcea30dbce98e58@%3Cdev.sling.apache.org%3E] -- This message was sent by Atlassian JIRA (v7.6.3#76005)
[jira] [Updated] (SLING-6130) Restrict access for principal everyone and move configuration to repoinit
[ https://issues.apache.org/jira/browse/SLING-6130?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ] Oliver Lietz updated SLING-6130: Fix Version/s: (was: JCR Oak Server 1.1.4) > Restrict access for principal everyone and move configuration to repoinit > - > > Key: SLING-6130 > URL: https://issues.apache.org/jira/browse/SLING-6130 > Project: Sling > Issue Type: Improvement > Components: JCR, Oak >Affects Versions: JCR Oak Server 1.1.0 >Reporter: Oliver Lietz >Assignee: Oliver Lietz > Labels: security > Attachments: error.log > > > Currently {{everyone}} can {{read}} from {{/}} (configured in > {{OakSlingRepositoryManager}}). > Access for {{everyone}} should be restricted: > * {{read}} should be restricted to {{/content}} > * configuration of principals and ACLs should be done with _repoinit_ > # -Change path from {{/}} to {{/content}} in {{OakSlingRepositoryManager}}- > (/) (-[r1764259|https://svn.apache.org/r1764259]-) > # Fix modules (samples) relying on _unrestricted_ {{read}} access > # Move configuration of ACLs to _repoinit_ (/) > discussion on > [dev@|https://lists.apache.org/thread.html/36908ed62ac93c63cad594a897f8abceb93f08da5bcea30dbce98e58@%3Cdev.sling.apache.org%3E] -- This message was sent by Atlassian JIRA (v6.3.15#6346)
[jira] [Updated] (SLING-6130) Restrict access for principal everyone and move configuration to repoinit
[ https://issues.apache.org/jira/browse/SLING-6130?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ] Julian Sedding updated SLING-6130: -- Fix Version/s: (was: JCR Oak Server 1.1.2) JCR Oak Server 1.1.4 > Restrict access for principal everyone and move configuration to repoinit > - > > Key: SLING-6130 > URL: https://issues.apache.org/jira/browse/SLING-6130 > Project: Sling > Issue Type: Improvement > Components: JCR, Oak >Affects Versions: JCR Oak Server 1.1.0 >Reporter: Oliver Lietz >Assignee: Oliver Lietz > Labels: security > Fix For: JCR Oak Server 1.1.4 > > Attachments: error.log > > > Currently {{everyone}} can {{read}} from {{/}} (configured in > {{OakSlingRepositoryManager}}). > Access for {{everyone}} should be restricted: > * {{read}} should be restricted to {{/content}} > * configuration of principals and ACLs should be done with _repoinit_ > # -Change path from {{/}} to {{/content}} in {{OakSlingRepositoryManager}}- > (/) (-[r1764259|https://svn.apache.org/r1764259]-) > # Fix modules (samples) relying on _unrestricted_ {{read}} access > # Move configuration of ACLs to _repoinit_ (/) > discussion on > [dev@|https://lists.apache.org/thread.html/36908ed62ac93c63cad594a897f8abceb93f08da5bcea30dbce98e58@%3Cdev.sling.apache.org%3E] -- This message was sent by Atlassian JIRA (v6.3.4#6332)
[jira] [Updated] (SLING-6130) Restrict access for principal everyone and move configuration to repoinit
[ https://issues.apache.org/jira/browse/SLING-6130?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ] Oliver Lietz updated SLING-6130: Attachment: error.log bq. Looks like the repository is not started. You'll have to check the error log file and see why, or launch Sling yourself and inspect the instance. [~rombert], no failures in !{{error.log}}! (see my comment above) > Restrict access for principal everyone and move configuration to repoinit > - > > Key: SLING-6130 > URL: https://issues.apache.org/jira/browse/SLING-6130 > Project: Sling > Issue Type: Improvement > Components: JCR, Oak >Affects Versions: JCR Oak Server 1.1.0 >Reporter: Oliver Lietz >Assignee: Oliver Lietz > Labels: security > Fix For: JCR Oak Server 1.1.2 > > Attachments: error.log > > > Currently {{everyone}} can {{read}} from {{/}} (configured in > {{OakSlingRepositoryManager}}). > Access for {{everyone}} should be restricted: > * {{read}} should be restricted to {{/content}} > * configuration of principals and ACLs should be done with _repoinit_ > # -Change path from {{/}} to {{/content}} in {{OakSlingRepositoryManager}}- > (/) (-[r1764259|https://svn.apache.org/r1764259]-) > # Fix modules (samples) relying on _unrestricted_ {{read}} access > # Move configuration of ACLs to _repoinit_ (/) > discussion on > [dev@|https://lists.apache.org/thread.html/36908ed62ac93c63cad594a897f8abceb93f08da5bcea30dbce98e58@%3Cdev.sling.apache.org%3E] -- This message was sent by Atlassian JIRA (v6.3.4#6332)
[jira] [Updated] (SLING-6130) Restrict access for principal everyone and move configuration to repoinit
[ https://issues.apache.org/jira/browse/SLING-6130?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ] Oliver Lietz updated SLING-6130: Description: Currently {{everyone}} can {{read}} from {{/}} (configured in {{OakSlingRepositoryManager}}). Access for {{everyone}} should be restricted: * {{read}} should be restricted to {{/content}} * configuration of principals and ACLs should be done with _repoinit_ # -Change path from {{/}} to {{/content}} in {{OakSlingRepositoryManager}}- (/) (-[r1764259|https://svn.apache.org/r1764259]-) # Fix modules (samples) relying on _unrestricted_ {{read}} access # Move configuration of ACLs to _repoinit_ (/) discussion on [dev@|https://lists.apache.org/thread.html/36908ed62ac93c63cad594a897f8abceb93f08da5bcea30dbce98e58@%3Cdev.sling.apache.org%3E] was: Currently {{everyone}} can {{read}} from {{/}} (configured in {{OakSlingRepositoryManager}}). Access for {{everyone}} should be restricted: * {{read}} should be restricted to {{/content}} * configuration of principals and ACLs should be done with _repoinit_ # Change path from {{/}} to {{/content}} in {{OakSlingRepositoryManager}} (/) ([r1764259|https://svn.apache.org/r1764259]) # Fix modules (samples) relying on _unrestricted_ {{read}} access # Move configuration of ACLs to _repoinit_ discussion on [dev@|https://lists.apache.org/thread.html/36908ed62ac93c63cad594a897f8abceb93f08da5bcea30dbce98e58@%3Cdev.sling.apache.org%3E] > Restrict access for principal everyone and move configuration to repoinit > - > > Key: SLING-6130 > URL: https://issues.apache.org/jira/browse/SLING-6130 > Project: Sling > Issue Type: Improvement > Components: JCR, Oak >Affects Versions: JCR Oak Server 1.1.0 >Reporter: Oliver Lietz >Assignee: Oliver Lietz > Labels: security > Fix For: JCR Oak Server 1.1.2 > > > Currently {{everyone}} can {{read}} from {{/}} (configured in > {{OakSlingRepositoryManager}}). > Access for {{everyone}} should be restricted: > * {{read}} should be restricted to {{/content}} > * configuration of principals and ACLs should be done with _repoinit_ > # -Change path from {{/}} to {{/content}} in {{OakSlingRepositoryManager}}- > (/) (-[r1764259|https://svn.apache.org/r1764259]-) > # Fix modules (samples) relying on _unrestricted_ {{read}} access > # Move configuration of ACLs to _repoinit_ (/) > discussion on > [dev@|https://lists.apache.org/thread.html/36908ed62ac93c63cad594a897f8abceb93f08da5bcea30dbce98e58@%3Cdev.sling.apache.org%3E] -- This message was sent by Atlassian JIRA (v6.3.4#6332)
[jira] [Updated] (SLING-6130) Restrict access for principal everyone and move configuration to repoinit
[ https://issues.apache.org/jira/browse/SLING-6130?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ] Oliver Lietz updated SLING-6130: Description: Currently {{everyone}} can {{read}} from {{/}} (configured in {{OakSlingRepositoryManager}}). Access for {{everyone}} should be restricted: * {{read}} should be restricted to {{/content}} * configuration of principals and ACLs should be done with _repoinit_ # Change path from {{/}} to {{/content}} in {{OakSlingRepositoryManager}} (/) ([r1764259|https://svn.apache.org/r1764259]) # Fix modules (samples) relying on _unrestricted_ {{read}} access # Move configuration of ACLs to _repoinit_ discussion on [dev@|https://lists.apache.org/thread.html/36908ed62ac93c63cad594a897f8abceb93f08da5bcea30dbce98e58@%3Cdev.sling.apache.org%3E] was: Currently {{everyone}} can {{read}} from {{/}} (configured in {{OakSlingRepositoryManager}}). Access for {{everyone}} should be restricted: * {{read}} should be restricted to {{/content}} * configuration of principals and ACLs should be done with _repoinit_ # Change path from {{/}} to {{/content}} in {{OakSlingRepositoryManager}} # Fix modules (samples) relying on _unrestricted_ {{read}} access # Move configuration of ACLs to _repoinit_ discussion on [dev@|https://lists.apache.org/thread.html/36908ed62ac93c63cad594a897f8abceb93f08da5bcea30dbce98e58@%3Cdev.sling.apache.org%3E] > Restrict access for principal everyone and move configuration to repoinit > - > > Key: SLING-6130 > URL: https://issues.apache.org/jira/browse/SLING-6130 > Project: Sling > Issue Type: Improvement > Components: JCR, Oak >Affects Versions: JCR Oak Server 1.1.0 >Reporter: Oliver Lietz >Assignee: Oliver Lietz > Labels: security > Fix For: JCR Oak Server 1.1.2 > > > Currently {{everyone}} can {{read}} from {{/}} (configured in > {{OakSlingRepositoryManager}}). > Access for {{everyone}} should be restricted: > * {{read}} should be restricted to {{/content}} > * configuration of principals and ACLs should be done with _repoinit_ > # Change path from {{/}} to {{/content}} in {{OakSlingRepositoryManager}} (/) > ([r1764259|https://svn.apache.org/r1764259]) > # Fix modules (samples) relying on _unrestricted_ {{read}} access > # Move configuration of ACLs to _repoinit_ > discussion on > [dev@|https://lists.apache.org/thread.html/36908ed62ac93c63cad594a897f8abceb93f08da5bcea30dbce98e58@%3Cdev.sling.apache.org%3E] -- This message was sent by Atlassian JIRA (v6.3.4#6332)