30 Mar
2005
30 Mar
'05
6:58 p.m.
Chris Withers wrote at 2005-3-30 08:31 +0100:
Dennis Allison wrote:
Are the standard roles (anonymous, authorized_user, manager) inclusive?
Yes. These special roles are "inclusive" (as their name might suggest).
... A user will have the Anonymous role iff they have not supplied any authentication credentials.
Any user has the "Anonymous" role whether or not it is authenticated.
A user will have the Authenticated role iff they HAVE supplied authentication credentials.
Especially, any "Manager" has the "Authenticated" role (as it is authenticated).
A user will never have Authenticated and Anonymous roles at the same time.
This is wrong. -- Dieter