Access Control

13 views
Skip to first unread message

Harry

unread,
Mar 7, 2009, 1:23:18 AM3/7/09
to CloudKit
Hi Jon,

how would you approach access control to allow/disallow certain
operations (http methods) on different classes of entities based on
where requests originate?

I am thinking of writing a custom rack module to do that but would be
interested in your or other's opinions.

Thanks & cheerio, Harry.

Jon Crosby

unread,
Mar 7, 2009, 7:58:10 PM3/7/09
to clou...@googlegroups.com
Harry, the 1.0 plan for CloudKit includes a sort of ACL system i.e. allowed methods per user per URI. If I were building what you describe today, I would do it exactly as you imagined -- as Rack middleware that does the filtering.

-Jon



Thanks & cheerio, Harry.


Harald Weppner

unread,
Mar 7, 2009, 8:19:28 PM3/7/09
to clou...@googlegroups.com
Hi Jon,

thanks - will do it that way then. Should anything generic fall off I'll let you know ;-)

Cheerio, Harry.

--~--~---------~--~----~------------~-------~--~----~
You received this message because you are subscribed to the Google Groups "CloudKit" group.
To post to this group, send email to clou...@googlegroups.com
To unsubscribe from this group, send email to cloudkit+u...@googlegroups.com
For more options, visit this group at http://groups.google.com/group/cloudkit?hl=en
-~----------~----~----~----~------~----~------~--~---


Reply all
Reply to author
Forward
0 new messages