Return-Path: Delivered-To: apmail-incubator-jspwiki-user-archive@locus.apache.org Received: (qmail 97495 invoked from network); 15 May 2008 15:30:59 -0000 Received: from hermes.apache.org (HELO mail.apache.org) (140.211.11.2) by minotaur.apache.org with SMTP; 15 May 2008 15:30:59 -0000 Received: (qmail 92464 invoked by uid 500); 15 May 2008 15:31:00 -0000 Delivered-To: apmail-incubator-jspwiki-user-archive@incubator.apache.org Received: (qmail 92448 invoked by uid 500); 15 May 2008 15:31:00 -0000 Mailing-List: contact jspwiki-user-help@incubator.apache.org; run by ezmlm Precedence: bulk List-Help: List-Unsubscribe: List-Post: List-Id: Reply-To: jspwiki-user@incubator.apache.org Delivered-To: mailing list jspwiki-user@incubator.apache.org Received: (qmail 92437 invoked by uid 99); 15 May 2008 15:31:00 -0000 Received: from nike.apache.org (HELO nike.apache.org) (192.87.106.230) by apache.org (qpsmtpd/0.29) with ESMTP; Thu, 15 May 2008 08:31:00 -0700 X-ASF-Spam-Status: No, hits=4.1 required=10.0 tests=DNS_FROM_OPENWHOIS,SPF_HELO_PASS,SPF_PASS,WEIRD_PORT,WHOIS_MYPRIVREG X-Spam-Check-By: apache.org Received-SPF: pass (nike.apache.org: domain of lists@nabble.com designates 216.139.236.158 as permitted sender) Received: from [216.139.236.158] (HELO kuber.nabble.com) (216.139.236.158) by apache.org (qpsmtpd/0.29) with ESMTP; Thu, 15 May 2008 15:30:06 +0000 Received: from isper.nabble.com ([192.168.236.156]) by kuber.nabble.com with esmtp (Exim 4.63) (envelope-from ) id 1JwfPX-0004pw-GY for jspwiki-user@incubator.apache.org; Thu, 15 May 2008 08:30:27 -0700 Message-ID: <17255965.post@talk.nabble.com> Date: Thu, 15 May 2008 08:30:27 -0700 (PDT) From: mkabcde To: jspwiki-user@incubator.apache.org Subject: Group based PagePermission in jspwiki.policy MIME-Version: 1.0 Content-Type: text/plain; charset=us-ascii Content-Transfer-Encoding: 7bit X-Nabble-From: martin.kirchner@cas.de X-Virus-Checked: Checked by ClamAV on apache.org Hello everybody! I encounter an unexpected behaviour with JSPWiki's access control system. (JSPWiki version 2.6.1) Unfortunately I did not find any older posts that could help me solving this problem. I have a user "test" that is a member of the group "Editors". The jspwiki.policy grants the following permissions to this group: grant principal com.ecyrd.jspwiki.auth.GroupPrincipal "Editors" { permission com.ecyrd.jspwiki.auth.permissions.PagePermission "*:*", "view,edit,rename,comment,upload"; permission com.ecyrd.jspwiki.auth.permissions.WikiPermission "*", "createPages,createGroups"; permission com.ecyrd.jspwiki.auth.permissions.WikiPermission "*", "editPreferences"; permission com.ecyrd.jspwiki.auth.permissions.WikiPermission "*", "editProfile"; permission com.ecyrd.jspwiki.auth.permissions.WikiPermission "*", "login"; }; All the pages I try to edit do NOT have an ACL like [{ALLOW edit Admin}]. However, I cannot edit a page. The log shows: 2008-05-15 17:07:21,798 [http-9080-7] INFO com.ecyrd.jspwiki.WikiContext JSPWiki:/JSPWiki/Edit.jsp JSPWiki:http://css-80-003.home.cas.de:9080/JSPWiki/Edit.jsp - User test has no access - forbidden (permission=("com.ecyrd.jspwiki.auth.permissions.PagePermission","JSPWiki:REST-Spezifikation","edit")) Am I missing something? Is there any chance to get debug information on the permissions granted to the current user? Any help is appreciated. Best regards Martin -- View this message in context: http://www.nabble.com/Group-based-PagePermission-in-jspwiki.policy-tp17255965p17255965.html Sent from the JspWiki - User mailing list archive at Nabble.com.