Re: [Acegisecurity-developer] Dynamically setting serviceProperties.service based on HttpRequest

2005-07-01 Thread Ben Alex
Hi Lenny Have you seen the http://opensource.atlassian.com/projects/spring/browse/SEC-17 task? Please feel free to add your code there. Thanks for sharing your solution. Cheers Ben --- SF.Net email is sponsored by: Discover Easy Linux Mi

Re: [Acegisecurity-developer] ACL interfaces

2005-07-01 Thread Ben Alex
March, Andres wrote: Thanks to the acegi team, my ACL implementation is relatively simple. But I have been struggling a little finding the proper extension points. The basic implementations are great but I have them hard to extend. In particular, the BasicAclEntryAfterInvocationProvider re

Re: [Acegisecurity-developer] why require an ADM

2005-07-01 Thread Ben Alex
March, Andres wrote: When using an afterInvocationManager it may not always be necessary or possible to provide before invocation security, so why require an ADM? I just use one that is allows everyone and abstentions to pass but it seems like a bit of overhead when all I really care about is

Re: [Acegisecurity-developer] Fwd: Adding roles without editing the configuration

2005-07-01 Thread Ben Alex
Kjetil Paulsen wrote: Thx for the response, I see what you are saying, however, since we don't have roles in the system today and isUserInRole is based on the group the user belongs to I'm not sure how to handle this... could it be a quick fix to add a 'known' role like 'USERS' to all users in t

[Acegisecurity-developer] why require an ADM

2005-07-01 Thread March, Andres
When using an afterInvocationManager it may not always be necessary or possible to provide before invocation security, so why require an ADM?  I just use one that is allows everyone and abstentions to pass but it seems like a bit of overhead when all I really care about is filtering the res