Uploaded image for project: 'Subversion'
  1. Subversion
  2. SVN-2184

Full path versus topmost path checking - restrictions deeper down ignored

VotersWatch issueWatchersLinkCloneUpdate Comment AuthorReplace String in CommentUpdate Comment VisibilityDelete Comments
    XMLWordPrintableJSON

    Details

    • Type: Bug
    • Status: Closed
    • Priority: Major
    • Resolution: Invalid
    • Affects Version/s: 1.1.x
    • Fix Version/s: unscheduled
    • Component/s: mod_authz_svn
    • Labels:
      None

      Description

      Inside - one repository - Assuming a [/] which has more relaxed access controls that a [/foo/bar/
      accounting] which is restricted to a few people than the controls of the latter affect the first group.
      
      You'd expect that all, including those with the wider access controls to be able to check out everything 
      but /foo/bar/accounting - and that only those with the 'staff' bit to be able to also check out /foo/bar/
      accounting.
      
      A work around is a separate repository for each access level. Which does not allow for matrix ACL's.
      
      Dw.
      

      Original issue reported by dirkx

        Attachments

          Activity

            People

            • Assignee:
              Unassigned
              Reporter:
              subversion-importer Subversion Importer

              Dates

              • Created:
                Updated:
                Resolved:

                Issue deployment