[Zope-dev] hack for refused authorization with virtual dataskin

Godefroid Chapelle gotcha@swing.be
Mon, 23 Apr 2001 13:37:38 +0200


Hello,


After rereading the ZopeSecurityPolicy source code, I tried the
following hack.

I add in the skinscript :

WITH 1 COMPUTE __allow_access_to_unprotected_subobjects__=RESULT

which does work : it fools the security mechanism.

I can live with it but feel that there is only a slight problem which
could allow me to avoid the hack.

I hope this can hint some of you to help me to understand what is badly
settled in my installation.



--

Godefroid Chapelle

BubbleNet sprl
rue Victor Horta, 30
1348 Louvain-la-Neuve
Belgium

Tel 010 457490
Mob 0477 363942

TVA 467 093 008
RC Niv 49849