On Tue, Jul 6, 2010 at 11:13, Alexander Klimetschek <aklim...@day.com> wrote:
> On Tue, Jul 6, 2010 at 10:21, Ian Boston <i...@tfd.co.uk> wrote:
>> A follow up on this, low level permissions wont work since they cant 
>> discriminate between list children and get child.
>
> Rereading your original mail now, I note that I didn't see that you
> still want the sub nodes to be accessible. Then my answer is no
> solution, of course ;-)

Actually principal-based access controls make my suggestion simpler to
setup, especially the second point:

> - /_user and /_user/ieb are readable for anonymous, the other children
> of /_user are denied
> - if "ieb" is a user-specific path, you have to authenticate users and
> work with specific users instead of anonymous

Regards,
Alex

-- 
Alexander Klimetschek
alexander.klimetsc...@day.com

Reply via email to