[Zope] Anonymous security

Andreas Jung lists at zopyx.com
Sun Dec 19 02:40:24 EST 2010


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Brian Sullivan wrote:
> Yeah -- I rediscovered Proxy roles and that seems like the most
> straightforward strategy -- not sure if there counter indicators
> though that would make that strategy problematic.

Weird question - nobody knows about the code that you intend to write.
If you are granting elevated rights to anonymous users one must be
very careful...

- -aj
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.11 (Darwin)
Comment: Using GnuPG with Mozilla - http://enigmail.mozdev.org/
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=zRub
-----END PGP SIGNATURE-----
-------------- next part --------------
A non-text attachment was scrubbed...
Name: lists.vcf
Type: text/x-vcard
Size: 316 bytes
Desc: not available
Url : http://mail.zope.org/pipermail/zope/attachments/20101219/f92f4dde/attachment.vcf 


More information about the Zope mailing list