Russ,
I started to glance the code and will give you some updates soon.
On the security interceptor I see you have preEvent security turned
on. Are you sure you want this? This basically checks for
authorization before any event execution even internally by running
runEvent() methods. If that is the case, then you are set. If not,
having it to false, basically enables security on the preProcess
interception point. IT all depends on your use case.
Another observation: Will you stay with the xml rules security file or
are you planning to manage it via the DB?
> E:
mark.man...@gmail.com
> W:
www.compoundtheory.com