Details
-
Improvement
-
Status: Closed
-
Major
-
Resolution: Done
-
JCR Oak Server 1.1.0
Description
Currently everyone can read from / (configured in OakSlingRepositoryManager).
Access for everyone should be restricted:
- read should be restricted to /content
- configuration of principals and ACLs should be done with repoinit
Change path from / to /content in OakSlingRepositoryManager(r1764259)- Fix modules (samples) relying on unrestricted read access
- Move configuration of ACLs to repoinit
discussion on dev@
Attachments
Attachments
Issue Links
- blocks
-
SLING-7647 Anonymous access to content stopped working
- Resolved
- causes
-
SLING-7615 HTL integration tests should use authentication
- Closed
-
SLING-7721 [HTL] Redirect user to login form in REPL if the user is not already authenticated
- Closed
- is blocked by
-
SLING-6171 Unable to set up ACLs for the 'everyone' principal
- Closed
- relates to
-
SLING-7554 Link to Slingshot sample does not work
- Closed
-
SLING-7484 Move content from JCR root to /content
- Closed