Le 18/05/2010 20:06, Thiago H. de Paula Figueiredo a écrit :
On Tue, 18 May 2010 15:00:20 -0300, Nicolas Bouillon <nico...@bouil.org> wrote:

I'm afraid it is also a no-go for using TSS with this kind of security hole. What a deception because it is easiest than a spring security XML file.

On the other hand, it's easy to create a ComponentEventFilterFilter that implements the missing checks. You don't even need to change TSS itself while the original developers don't fix that.

I guess you mean ComponentEventRequestFilter, like this kind of stuf :
http://www.chenillekit.org/chenillekit-access/xref/org/chenillekit/access/services/impl/ComponentEventAccessFilter.html ?

---------------------------------------------------------------------
To unsubscribe, e-mail: users-unsubscr...@tapestry.apache.org
For additional commands, e-mail: users-h...@tapestry.apache.org

Reply via email to