[jira] Commented: (OFBIZ-615) Re-Factor WorkEffort permissions to follow new patterns

2007-01-11 Thread Andrew Zeneski (JIRA)
[ https://issues.apache.org/jira/browse/OFBIZ-615?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel#action_12464000 ] Andrew Zeneski commented on OFBIZ-615: -- Here are the specs for WorkEffort Permissions, if possible it would be

[jira] Commented: (OFBIZ-609) Re-Factor Project Wide Permissions

2007-01-10 Thread Andrew Zeneski (JIRA)
[ https://issues.apache.org/jira/browse/OFBIZ-609?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel#action_12463811 ] Andrew Zeneski commented on OFBIZ-609: -- I created sub-tasks for both of these. Thank you very much! Comment

[jira] Created: (OFBIZ-615) Re-Factor WorkEffort permissions to follow new patterns

2007-01-10 Thread Andrew Zeneski (JIRA)
Type: Sub-task Components: workeffort Reporter: Andrew Zeneski -- This message is automatically generated by JIRA. - If you think it was sent incorrectly contact one of the administrators: https://issues.apache.org/jira/secure/Administrators.jspa - For more information on

[jira] Updated: (OFBIZ-616) Re-Factor Account permissions to follow new patterns

2007-01-10 Thread Andrew Zeneski (JIRA)
[ https://issues.apache.org/jira/browse/OFBIZ-616?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ] Andrew Zeneski updated OFBIZ-616: - Component/s: accounting > Re-Factor Account permissions to follow new patte

[jira] Created: (OFBIZ-616) Re-Factor Account permissions to follow new patterns

2007-01-10 Thread Andrew Zeneski (JIRA)
: Sub-task Components: accounting Reporter: Andrew Zeneski -- This message is automatically generated by JIRA. - If you think it was sent incorrectly contact one of the administrators: https://issues.apache.org/jira/secure/Administrators.jspa - For more information on JIRA

[jira] Updated: (OFBIZ-615) Re-Factor WorkEffort permissions to follow new patterns

2007-01-10 Thread Andrew Zeneski (JIRA)
[ https://issues.apache.org/jira/browse/OFBIZ-615?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ] Andrew Zeneski updated OFBIZ-615: - Component/s: workeffort > Re-Factor WorkEffort permissions to follow new patte

Re: Custom Security / Permissions

2007-01-10 Thread Andrew Zeneski
neric permissions. But now I realize this isn't practical. Andrew On Jan 10, 2007, at 2:31 PM, David E Jones wrote: On Jan 10, 2007, at 8:57 AM, Andrew Zeneski wrote: Yes, however the example uses the built in permission checking in the simple methods which in turn uses the Security

Re: CSS Layout and Other Cleanups in the Manager Applications

2007-01-10 Thread Andrew Zeneski
I'm not too sure about combining all styles into one css file. Cleaning them up surely would be a good thing, but tabstyles.css was designed to handle the tab sections of screens. Only needed to be included in screens which use the top level tabs. Keeping this separate IMO would make changi

[jira] Commented: (OFBIZ-605) Consolidate backend css files

2007-01-10 Thread Andrew Zeneski (JIRA)
[ https://issues.apache.org/jira/browse/OFBIZ-605?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel#action_12463657 ] Andrew Zeneski commented on OFBIZ-605: -- Is this really what we want to do? Isn't having smaller CSS file

Re: Permission Re-factoring Project

2007-01-10 Thread Andrew Zeneski
be nice to remove before the release however, but this is just my opinion. Andrew On Jan 10, 2007, at 12:20 PM, Chris Howe wrote: Because of the size of the change, would it be wise not to commit the changes until after the release? (just questioning, not providing an opinion either way) --- Andr

Re: Permission Re-factoring Project

2007-01-10 Thread Andrew Zeneski
On Jan 10, 2007, at 12:26 PM, Adrian Crum wrote: Comments inline: Andrew Zeneski wrote: The major basic tasks at hand are as follows: 1) change the use of the required-permissions element in service definitions to use the infrastructure (61 instances). 2) move the permission checking from

Permission Re-factoring Project

2007-01-10 Thread Andrew Zeneski
Now that the new service based permission framework is in place, it would be nice to get a community effort going to help clean up some of the code & views to utilize this new infrastructure. I'm calling out to the community to see if there are any interested parties... The major basic task

[jira] Updated: (OFBIZ-611) Re-Factor Content permissions to follow new patterns

2007-01-10 Thread Andrew Zeneski (JIRA)
[ https://issues.apache.org/jira/browse/OFBIZ-611?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ] Andrew Zeneski updated OFBIZ-611: - Description: The content manager permission scheme should be migrated to use the new

[jira] Updated: (OFBIZ-611) Re-Factor Content permissions to follow new patterns

2007-01-10 Thread Andrew Zeneski (JIRA)
[ https://issues.apache.org/jira/browse/OFBIZ-611?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ] Andrew Zeneski updated OFBIZ-611: - Component/s: content Affects Version/s: SVN trunk > Re-Factor Content permissions

[jira] Created: (OFBIZ-611) Re-Factor Content permissions to follow new patterns

2007-01-10 Thread Andrew Zeneski (JIRA)
: Sub-task Components: content Affects Versions: SVN trunk Reporter: Andrew Zeneski -- This message is automatically generated by JIRA. - If you think it was sent incorrectly contact one of the administrators: https://issues.apache.org/jira/secure/Administrators.jspa

[jira] Created: (OFBIZ-610) Remove all instances of 'required-permissions' usage in service definition files.

2007-01-10 Thread Andrew Zeneski (JIRA)
ct: Apache OFBiz (The Open for Business Project) Issue Type: Sub-task Components: accounting, framework, order, party, product Reporter: Andrew Zeneski Assigned To: Andrew Zeneski There are currently 61 instances of service definitions which use the now

[jira] Updated: (OFBIZ-609) Re-Factor Project Wide Permissions

2007-01-10 Thread Andrew Zeneski (JIRA)
[ https://issues.apache.org/jira/browse/OFBIZ-609?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ] Andrew Zeneski updated OFBIZ-609: - Component/s: workeffort product pos party

[jira] Created: (OFBIZ-609) Re-Factor Project Wide Permissions

2007-01-10 Thread Andrew Zeneski (JIRA)
: SVN trunk Reporter: Andrew Zeneski Assigned To: Andrew Zeneski With the implementation of the new service based permission infrastructure, we now can apply better permission handling to core logic and views within OFBiz. This issue is a top level task in which sub-tasks shall

Re: Custom Security / Permissions

2007-01-10 Thread Andrew Zeneski
wrote: Looks good Andy, and there's even an example of how to use it! -David On Jan 9, 2007, at 10:35 PM, Andrew Zeneski wrote: Based on the discussions from this thread as well as some offline discussions, the new service based permission checking is checked in. Examples of usi

Re: Custom Security / Permissions

2007-01-09 Thread Andrew Zeneski
. Andrew Zeneski wrote: I agree, I think this is nice. I thought you were talking about Java Objects however, so indeed I think the service model will still fit this just fine. Andrew On Jan 9, 2007, at 3:57 PM, Adrian Crum wrote: Andrew Zeneski wrote: Adrian, Where do you see the need

Re: Custom Security / Permissions

2007-01-09 Thread Andrew Zeneski
I agree, I think this is nice. I thought you were talking about Java Objects however, so indeed I think the service model will still fit this just fine. Andrew On Jan 9, 2007, at 3:57 PM, Adrian Crum wrote: Andrew Zeneski wrote: Adrian, Where do you see the need for an Object? So far

Re: Custom Security / Permissions

2007-01-09 Thread Andrew Zeneski
Maybe adding: To the service ECAs to trigger events based on permission would add an additional layer of security when triggering events. If we go with the bypass route, this may be necessary. Andrew On Jan 9, 2007, at 3:17 PM, Andrew Zeneski wrote: Yes Adrian I agree... I am thinking

Re: Custom Security / Permissions

2007-01-09 Thread Andrew Zeneski
Do you foresee this causing new problems? :) On Jan 9, 2007, at 3:24 PM, Adrian Crum wrote: It certainly solves the one I described! Thanks Andy! Andrew Zeneski wrote: Yes Adrian I agree... I am thinking about the same types of processes. The createParty service for example is useless

Re: Custom Security / Permissions

2007-01-09 Thread Andrew Zeneski
Adrian, Where do you see the need for an Object? So far what I have heard is service based authentication and permissions will cover everything, if you see otherwise please describe. Andrew On Jan 9, 2007, at 3:11 PM, Adrian Crum wrote: Andrew Zeneski wrote: There are two main areas

Re: Custom Security / Permissions

2007-01-09 Thread Andrew Zeneski
rameter checking layer Perform desired action layer (permissions ignorant) David E Jones wrote: On Jan 9, 2007, at 12:20 PM, Adrian Crum wrote: Andrew Zeneski wrote: CRUD services probably will not have permissions assigned, and NEVER called directly from requests. Maybe we add a flag to these

Re: Custom Security / Permissions

2007-01-09 Thread Andrew Zeneski
would take a lot of work, and like you said, much more discussion. So, what's next? Where do we go from here? Is there anything I can do to help? -Adrian Andrew Zeneski wrote: Adrian, I took a look at this as well thinking this would be the ideal place to start. After looking at

Re: Custom Security / Permissions

2007-01-09 Thread Andrew Zeneski
en Object A granted permission to modify Object B Andrew Zeneski wrote: It is my believe and I am sure there are others who agree, the base permission scheme in OFBiz just doesn't cut it for application specific security. What I want to propose and make an initial decisi

Re: Custom Security / Permissions

2007-01-09 Thread Andrew Zeneski
t B has modify-able permission in that context, then Object A granted permission to modify Object B Andrew Zeneski wrote: It is my believe and I am sure there are others who agree, the base permission scheme in OFBiz just doesn't cut it for application specific security. What I wan

Re: Custom Security / Permissions

2007-01-08 Thread Andrew Zeneski
small overhead for the service call but maybe it is an acceptable cost to have. What do you think? Please, consider that I just had a very cursory look at your work and so this comment could be inappropriate... if so, just ignore it! Jacopo Andrew Zeneski wrote: It is my believe and I am

Custom Security / Permissions

2007-01-05 Thread Andrew Zeneski
It is my believe and I am sure there are others who agree, the base permission scheme in OFBiz just doesn't cut it for application specific security. What I want to propose and make an initial decision on is a generic schema for developing custom security implementations for specific appl

Comments in Simple Methods

2007-01-05 Thread Andrew Zeneski
Are comments no longer allowed in simple methods? 2007-01-05 13:11:16,462 (http-0.0.0.0-8443-Processor4) [UtilXml.java:658:ERROR] XmlFileLoader: File file:/Users/ jaz/Sandbox/apache-ofbiz/applications/order/script/org/ofbiz/order/ order/OrderServices.xml process error. Line: 824.

Re: ServiceGroup - service-group.xsd

2007-01-05 Thread Andrew Zeneski
eat to follow the pattern used elsewhere so that the parsing code still accepts the old element name, which will obviously only work for the group definitions in the service-group file as the "service" element name would conflict in the services XML files. -David On Jan 5,

ServiceGroup - service-group.xsd

2007-01-05 Thread Andrew Zeneski
least for now) with the added support to embed your group defs inside a service. Andrew Zeneski [EMAIL PROTECTED] smime.p7s Description: S/MIME cryptographic signature

[jira] Reopened: (OFBIZ-589) Party Content Admin Screens and Service

2007-01-04 Thread Andrew Zeneski (JIRA)
[ https://issues.apache.org/jira/browse/OFBIZ-589?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ] Andrew Zeneski reopened OFBIZ-589: -- The updatePartyContent service should accept the actual content value and update the content

[jira] Resolved: (OFBIZ-589) Party Content Admin Screens and Service

2007-01-04 Thread Andrew Zeneski (JIRA)
[ https://issues.apache.org/jira/browse/OFBIZ-589?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ] Andrew Zeneski resolved OFBIZ-589. -- Resolution: Fixed Fix Version/s: SVN trunk Patch applied to trunk. > Party Cont

[jira] Assigned: (OFBIZ-589) Party Content Admin Screens and Service

2007-01-03 Thread Andrew Zeneski (JIRA)
[ https://issues.apache.org/jira/browse/OFBIZ-589?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ] Andrew Zeneski reassigned OFBIZ-589: Assignee: Andrew Zeneski > Party Content Admin Screens and Serv

Confluence Site

2007-01-02 Thread Andrew Zeneski
I just uploaded the OFBiz logo to the confluence site. I thought it would give us a little better branding. If anyone has any objections to this, please let me know. Otherwise its there now for everyone to see. Andrew smime.p7s Description: S/MIME cryptographic signature

[jira] Commented: (OFBIZ-540) Services and Screens WorkEffortReview, WorkEffortContent, and WorkEffortGoodStandard

2006-12-11 Thread Andrew Zeneski (JIRA)
[ http://issues.apache.org/jira/browse/OFBIZ-540?page=comments#action_12457549 ] Andrew Zeneski commented on OFBIZ-540: -- What's the status on this patch? Is it ready for prime time or still in progress? > Services and