Uploaded image for project: 'Jackrabbit Oak'
  1. Jackrabbit Oak
  2. OAK-6147

Review SessionOperation usage in security code

    XMLWordPrintableJSON

Details

    • Improvement
    • Status: Closed
    • Major
    • Resolution: Fixed
    • None
    • 1.7.3, 1.8.0
    • core, security
    • None

    Description

      Some of the SessionOperation usage in security related bits is entirely not correct. Most of the operations are marked as read-only, when a lot of them should be read-write.

      Items to review (just did a lookup of the class, so maybe not all of them need attention):

      org.apache.jackrabbit.oak.jcr.delegate.AccessControlManagerDelegator
      org.apache.jackrabbit.oak.jcr.delegate.AuthorizableDelegator
      org.apache.jackrabbit.oak.jcr.delegate.GroupDelegator
      org.apache.jackrabbit.oak.jcr.delegate.ImpersonationDelegator
      org.apache.jackrabbit.oak.jcr.delegate.JackrabbitAccessControlManagerDelegator
      org.apache.jackrabbit.oak.jcr.delegate.PrincipalManagerDelegator
      org.apache.jackrabbit.oak.jcr.delegate.PrivilegeManagerDelegator
      org.apache.jackrabbit.oak.jcr.delegate.UserDelegator
      org.apache.jackrabbit.oak.jcr.security.AccessManager

      anchela fyi

      Attachments

        Activity

          People

            stillalex Alex Deparvu
            stillalex Alex Deparvu
            Votes:
            0 Vote for this issue
            Watchers:
            1 Start watching this issue

            Dates

              Created:
              Updated:
              Resolved: