hi
Well, groups are also content.
sure...
We don't want to use ACLs per se to control node-level access, we only want to use the built in user password and group membership management. Authorisation is handled higher up in the application layer.
so, what's your problem? i don't understand your question(s) in this case... the additional information regarding profile, group information, authentication apparently pointed me in the wrong direction :) regards angela
