[CMF-checkins] CVS: Products/CMFDecor/skins/zpt_generic - personalize_form.pt:1.4

Jens Vagelpohl jens@zope.com
Wed, 10 Oct 2001 10:40:51 -0400


Update of /cvs-repository/Products/CMFDecor/skins/zpt_generic
In directory cvs.zope.org:/tmp/cvs-serv15906/CMFDecor/skins/zpt_generic

Modified Files:
	personalize_form.pt 
Log Message:
CMF Tracker 349 (thanks to Bill Anderson): added access control checking to
personalize_form so that Anonymous can't access it.



=== Products/CMFDecor/skins/zpt_generic/personalize_form.pt 1.3 => 1.4 ===
   <div tal:define="member python: here.portal_membership.getAuthenticatedMember()">
 
+  <div tal:condition="python: not(here.portal_membership.checkPermission( 'List folder contents'
+                                                                        , here))">
+    <span tal:define="red_str string: ${here/portal_url}/login_form?came_from=${here/absolute_url};
+                      redirect python: request.RESPONSE.redirect( red_str )"></span>
+  </div>
+
 
 <div class="Desktop">