Re: [Mailman-Developers] Authorization System in Core

2016-05-21 Thread Stephen J. Turnbull
Simon Hanna writes: > While in theory it would be possible to enforce permissions in core > about who is allowed to call specific rest calls, this would > require a lot of changes. I'm not sure we want to go this way. Mailman is used in a lot of enterprises contexts, where the system administr

Re: [Mailman-Developers] Authorization System in Core

2016-05-21 Thread Simon Hanna
On 05/22/2016 12:08 AM, Harshit Bansal wrote: > Hi Simon, > This is the discussion that I was referring to: > > Harshit Bansal writes: > > > I think the "Permissions Systems" would have nothing to do with the > > core. It would be related to Postorius. We will have to create a style > > model

Re: [Mailman-Developers] Authorization System in Core

2016-05-21 Thread Harshit Bansal
Hi Simon, This is the discussion that I was referring to: Harshit Bansal writes: > I think the "Permissions Systems" would have nothing to do with the > core. It would be related to Postorius. We will have to create a style > model separately in Postorius which would store the style name and t

Re: [Mailman-Developers] Authorization System in Core

2016-05-21 Thread Simon Hanna
>Hi, >Earlier, while discussing the permission system for manging styles, it >was >decided that the permissions system should be enforced in the core >rather >than in the postorius since otherwise it can be bypassed(deliberately >or >undeliberately). But one thing that I think I forgot to discuss w

[Mailman-Developers] Authorization System in Core

2016-05-21 Thread Harshit Bansal
Hi, Earlier, while discussing the permission system for manging styles, it was decided that the permissions system should be enforced in the core rather than in the postorius since otherwise it can be bypassed(deliberately or undeliberately). But one thing that I think I forgot to discuss was that

[Mailman-Developers] FWD: [dmarc-ietf] Last Call: (Interoperability Issues Between DMARC and Indirect Email Flows) to Informational RFC

2016-05-21 Thread Stephen J. Turnbull
Hi, all This IETF work affects us all, so I'm reposting here so those with the interest can participate. "Indirect mail flows" includes but is not limited to mailing lists. "DMARC" is the protocol which Yahoo! and AOL used to unsubscribe thousands of innocent list members in April 2014. This Int