[Zope-dev] Factory pollution, scopes, zope hosting

Lalo Martins lalo@webcom.com
Wed, 12 Jan 2000 13:45:19 -0200


On Wed, Jan 12, 2000 at 09:08:31AM -0600, Tres Seaver wrote:
> 
> You have identified a real problem:  it is a pain even for me in a site where I
> stage projects for different clients.  One solution I had considered was to hack
> the factories to add a "global_visibility" flag to them, and to add a "factory
> proxy" object which would be dropped into the main Zope tree which would
> "surface" its factory to folders which acquired it.

I thought of this one too, but it would be a major security
problem, because any of your customers with Manager role would
be able to add a ``factory proxy'' (or ``product proxy'') and
gain access to any product you have.

I think a scope in the Factory (or perhaps the Product, you
have a good point) is the best sollution.

[]s,
                                               |alo
                                               +----
--
      I am Lalo of deB-org. You will be freed.
                 Resistance is futile.

http://www.webcom.com/lalo      mailto:lalo@webcom.com
                 pgp key in the web page

Debian GNU/Linux       ---       http://www.debian.org
Brazil of Darkness   --   http://zope.gf.com.br/BroDar