On Tuesday 13 February 2007 04:51, David Johnson wrote: > I'm trying to understand this situation also since we face it > frequently. The PAU has a Group Folder which works well in this > regard. Would the idea of extending Groups in the PAU to include any > person in the ldap directory be useful? It seems this would be > easier and more flexible.
That's what I would do. I think LDAP permissions/roles/groups map best to our concept of groups. To implement a group folder that gets its groups from LDAP should not be that hard, given the existing ldappas implementation. Regards, Stephan -- Stephan Richter CBU Physics & Chemistry (B.S.) / Tufts Physics (Ph.D. student) Web2k - Web Software Design, Development and Training _______________________________________________ Zope3-users mailing list Zope3-users@zope.org http://mail.zope.org/mailman/listinfo/zope3-users