[Zope3-dev] Zope security policy

Garrett Smith garrett at mojave-corp.com
Thu Mar 10 11:32:29 EST 2005


Roger Ineichen wrote:
> Hi Garrett
> 
> From: Garrett Smith [mailto:garrett at mojave-corp.com]
>> Sent: Thursday, March 10, 2005 5:05 PM
>> To: dev at projekt01.ch
>> Cc: zope3-dev at zope.org
>> Subject: RE: [Zope3-dev] Zope security policy
>> 
>> I glanced over the transcript, but I'm not sure what I'm supposed to
>> get from it.
> 
> ;-) nothing, if we don't change the default configuration
> for zope.View from Allow to Deny for unauthentcated principals.

Ah, so you're saying we just delete these grants?

That's fine, but it's decoupled from my point, which is to move these
decision points into site-specific configuration.

 -- Garrett


More information about the Zope3-dev mailing list