30 Apr
2004
30 Apr
'04
11:38 p.m.
On Fri, 30 Apr 2004, Chris McDonough wrote:
On Fri, 2004-04-30 at 18:28, Dennis Allison wrote:
I want to add some special checking to prevent direct, through the web access to authenticated users who, I discover, can get a second browser window and move around the site from URL independent of access path. [...] you aren't, it's possible that you may be "fighting the framework" a little bit here and should maybe take a step back and see if there's a way to solve the problem using the builtin Zope security model.
There is one way, but the option of 10000 or more roles boggles the imagination.