[
https://issues.apache.org/jira/browse/JCR-2937?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=13019891#comment-13019891
]
Tobias Bocanegra commented on JCR-2937:
---------------------------------------
yes. the desired, effective result should be:
- "everyone" allow read "/" (and it's properties ?)
- "everyone" deny read "/*" (all subnodes of "/")
> ACL with glob restrictions does not work on '/'
> -----------------------------------------------
>
> Key: JCR-2937
> URL: https://issues.apache.org/jira/browse/JCR-2937
> Project: Jackrabbit Content Repository
> Issue Type: Bug
> Components: security
> Affects Versions: 2.3.0
> Reporter: Tobias Bocanegra
> Assignee: angela
>
> i tried to define a ACL on '/' that would allow 'read' on '/' itself, but not
> for the nodes underneath. i tried "*", "/*", "./*" but none of them seem to
> do the desired effect.
> eg:
> everyone,allow,jcr:read, '/'
> everyone,deny,jcr:read, '/', glob="/*"
> the same works for a non-root node.
--
This message is automatically generated by JIRA.
For more information on JIRA, see: http://www.atlassian.com/software/jira