[Zope3-dev] a note on groups and roles

Jeremy Hylton jeremy@zope.com
Wed, 27 Mar 2002 00:10:27 -0500


>>>>> "JF" == Jim Fulton <jim@zope.com> writes:

  JF> Jeremy Hylton wrote:
  >>
  >> A conversation with Matt Behrens and Shane Hathaway lead me to
  >> write this note on the difference between groups and roles in
  >> Zope security.  I'd be grateful for comments and criticism.
  >>
  >> Jeremy
  >>
  >> A note on groups and roles
  >>
  >> The current Zope philosophy advocates a distinction between group
  >> and role that is not found in the security literature.

  JF> That's odd for you to say, since later in your note, you give a
  JF> meaning for role from the security literature that is distinct
  JF> from group.

To clarify this (admittedly minor) point:  The security literature
distinguishes between group and role.  Zope folks also distinguish
between group and role.  In the former case, there is a real
distinction.  In the latter case, I argued, there is no real
distinction.

Jeremy