Class PageReadPermissionForNonAnonymous
java.lang.Object
ch.tocco.nice2.dms.spi.security.policyprocessor.AbstractDmsPolicyProcessor
ch.tocco.nice2.optional.cms.impl.security.policyprocessor.PageReadPermissionForNonAnonymous
- All Implemented Interfaces:
PolicyProcessor
PolicyProcessor
that efficiently implements the equivalent of the following acl rule:
entity(Page):
grant access(read) except redactor, &anonymous if exists(relContent_published)
and ( read_permissions_set == false
or (relNode_right.relNode_permission.unique_id == "read"
and relNode_right.relRole.relLogin_role.relPrincipal.username == principal.name) );
-
Field Summary
Fields inherited from class ch.tocco.nice2.dms.spi.security.policyprocessor.AbstractDmsPolicyProcessor
context, evaluationService, typeManager
-
Constructor Summary
ConstructorDescriptionPageReadPermissionForNonAnonymous
(Context context, TypeManager typeManager, PermissionMatrixEvaluationService evaluationService) -
Method Summary
Modifier and TypeMethodDescriptionprotected Node
getAdditionalCondition
(EntityModel entityModel) protected String
protected boolean
isSupported
(Principal principal) Methods inherited from class ch.tocco.nice2.dms.spi.security.policyprocessor.AbstractDmsPolicyProcessor
getEntityModel, prependRule, processPolicy
-
Constructor Details
-
PageReadPermissionForNonAnonymous
public PageReadPermissionForNonAnonymous(Context context, TypeManager typeManager, PermissionMatrixEvaluationService evaluationService)
-
-
Method Details
-
isSupported
- Specified by:
isSupported
in classAbstractDmsPolicyProcessor
-
getNodePermissionName
- Specified by:
getNodePermissionName
in classAbstractDmsPolicyProcessor
-
getAdditionalCondition
- Specified by:
getAdditionalCondition
in classAbstractDmsPolicyProcessor
-