[etoys-notify] [JIRA] Updated: (SQ-391) webdav access security

tracker at squeakland.org tracker at squeakland.org
Tue Sep 22 17:50:58 EDT 2009


     [ http://tracker.immuexa.com/browse/SQ-391?page=all ]

timothy updated SQ-391:
-----------------------

    Description: 
Prevent anyone from deleting files that are not in their account dir.

(People can only do this using WebDAV directly now.)


Prevent people from seeing non-public files within Etoys, unless it's their account dir.

  was:
Prevent anyone from deleting files that are not in their account dir, or their group dir if they are the group founder.

(People can only do this using WebDAV directly now.)


Prevent people from seeing non-public files within Etoys, unless it's their account dir or group dir.

(People can currently see everything within Etoys.)


> webdav access security
> ----------------------
>
>          Key: SQ-391
>          URL: http://tracker.immuexa.com/browse/SQ-391
>      Project: squeakland
>         Type: Improvement
>   Components: showcase
>     Reporter: timothy
>     Assignee: timothy
>     Priority: Blocker
>      Fix For: etoys 4.0 - summer 2009

>
>
> Prevent anyone from deleting files that are not in their account dir.
> (People can only do this using WebDAV directly now.)
> Prevent people from seeing non-public files within Etoys, unless it's their account dir.

-- 
This message is automatically generated by JIRA.
-
If you think it was sent incorrectly contact one of the administrators:
   http://tracker.immuexa.com/secure/Administrators.jspa
-
For more information on JIRA, see:
   http://www.atlassian.com/software/jira



More information about the etoys-notify mailing list