[Freeipa-devel] [PATCH] 0513 Add managed read permissions to permission

Petr Viktorin pviktori at redhat.com
Wed Apr 9 14:54:12 UTC 2014


The meta-permissions.

Read access is given to all authenticated users. Reading membership info 
(i.e. privileges) is split into a separate permission.

Another permission is added that allows read access to all ACIs.
If we don't want to open that up for everyone, I could limit this to 
only ACIs containing "permission:". (Since old-style permissions store 
their information in ACIs, their ACIs need to be readable.)

-- 
Petr³
-------------- next part --------------
A non-text attachment was scrubbed...
Name: freeipa-pviktori-0513-Add-managed-read-permissions-to-permission.patch
Type: text/x-patch
Size: 2796 bytes
Desc: not available
URL: <http://listman.redhat.com/archives/freeipa-devel/attachments/20140409/515786c0/attachment.bin>


More information about the Freeipa-devel mailing list