[Zope-dev] Zope security alert and 2.2 information

Michel Pelletier michel@digicool.com
Wed, 10 May 2000 11:21:59 -0700


Chris Withers wrote:
> 
> "Morten W. Petersen" wrote:
> >
> > > Could you have a button that re-logs you in as the new "nobody" user?
> > >
> > > So, the procedure would be
> > >
> > > 1: Log in as Manager user
> > > 2: Do privilaged task
> > > 3: Press "finished! log me out" button to return to "nobody".
> 
> Hmm, how do this 'nobody' user and the Anonymous user interact?
> Are they the same?

No.

> Should they be?

No.

> what are the differences?

'nobody' is a special user and can own objects.  'Anonymous User' is a
'placeholder' user object for a request that is not authenticated.
 
-- 

-Michel Pelletier

http://www.zope.org/Members/michel/MyWiki

Visit WikiCentral for the latest Zen:

http://www.zope.org/Members/WikiCentral