Re: [Semanticscuttle-devel] user session problems
Brought to you by:
cweiske
From: Christian W. <cw...@cw...> - 2011-05-12 18:09:51
|
Hello Mark, > > 1. The private key authenticates the user on certain areas of > > SemanticScuttle - currently only on the RSS feeds. No other area. > > 2. To be able to use the service methods required for private RSS > > feeds, we need to register the user identified by the private key > > as the current user. > > 3. The current user is stored in the session > > 4. To restrict privatekey access to the RSS feeds only, we need to > > unregister the current user after the feed has been generated. > > 5. If the script crashes during RSS generation, the user does not > > get unregistered/unset. This means that the user will be still > > logged in and can access all areas although he originally only had > > the private key. > > > > So we need to decouple the current user from the session storage. > Gotcha. About to walk into a meeting. I think it can be done, and > hopefully with little pain. Will catch up later. I fixed that in the master branch; just merge it - it should apply without problems. -- Regards/Mit freundlichen Grüßen Christian Weiske -=≡ Geeking around in the name of science since 1982 ≡=- |