Bug #8485

Policies/ACLs do not work (anymore)

Added by Michael Schams over 11 years ago. Updated almost 11 years ago.

Status:
Resolved
Priority:
Should have
Category:
Security
Start date:
2010-06-24
Due date:
% Done:

100%

Estimated time:
PHP Version:
Has patch:
Complexity:

Description

Attached file ./Configuration/Policy.yaml does not work.

Issue (1)
line 13: keyword before pointcut expression has to read "methods" (with "s"), not "method" as documented in [1]. Keyword was "method" (without "s") before (in an older SVN revision).

Issue (2)
It's unknown how ACLs work now. Previously the syntax in file Policy.yaml was:

acls:
  ROLENAME:
   RESOURCE_NAME: GRANT

This causes the following exception:

Notice: Undefined index: entities in /var/www/.../Packages/Framework/FLOW3/Classes/Security/Policy/PolicyService.php line 401

Removing the "acls:"-section from file Policy.yaml "fixes" the problem.

It's assumed that these two issues were introduced by changes in SVN between 23/June/2010 and 24/June/2010.

[1] = http://flow3.typo3.org/documentation/manuals/flow3/flow3.securityframework/
Example 13.10 "Example resources definition..."


Files

Policy.yaml (715 Bytes) Policy.yaml Michael Schams, 2010-06-24 14:55
issue8485-Policy-ACL.jpg (114 KB) issue8485-Policy-ACL.jpg Michael Schams, 2010-06-24 15:10
#1

Updated by Michael Schams over 11 years ago

Hmmm... issue (1) is not reproducible - maybe we can ignore this?

#2

Updated by Andreas Förthner over 11 years ago

  • Status changed from New to Resolved
  • % Done changed from 0 to 100

Applied in changeset r4627.

#3

Updated by Karsten Dambekalns over 11 years ago

  • Category set to Security
  • Assignee set to Andreas Förthner
  • Target version set to 1.0 alpha 10

Also available in: Atom PDF