Forums / General / Access denied problem - diggin into it

Access denied problem - diggin into it

Author Message

Thomas Brandl

Tuesday 29 July 2003 1:13:11 am

Hi everybody!

As I have some problems with the anonymous access to my site, I encountered this (buggy) behaviour:

/admin/role/list/ -> Clicking "Anonymous" [Edit]
What I see is:
-------------------------------
user : login : *
content : read : *
-------------------------------

going back and choosing "Assign" and selecting "Anonymous User" I see totally different role policies:

-------------------------------
user : login : *
content : read : Class( Folder , Info page , Info page , Link , Link , File , File , Comment , Comment , Article , Article , Image , Image , Product , Product )
-------------------------------

Notice the classes listed twice.

I edited the role once again and granted access to "Class( Folder , Info page , Link , File , Comment , Referenz , Kontakt , Article , Image , Product )"

The changes seemed commited, BUT:
/admin/role/list/ -> Clicking "Anonymous" [Edit] shows me:

-------------------------------
content : read : *
-------------------------------

And, even worse,
/admin/role/list/ -> Clicking "Anonymous" [Assign], assigning "Anonymous User" shows me:
content : read : * Class( Folder , Info page , Link , File , Comment , Referenz , Kontakt , Article , Image , Product )

Notice the "*" at the beginning.

I tried then to delete the "content" policy: It disappeared within the edit-section, but the policy shown after assigning the role showed me the old grants. And more: the rights still existed, anonymous had all access to content : read!

So I got two major problems: I have two different policy views, depending on wheter I choose edit or view the role after I have assigned it to a User/User-Group.
And it seems edit does not really commit changes properly.

This applies to 3.1-1 Revision: 2703

I regard this as a huge problem and it would be great if we could figure out if this is my personal problem or if others also experience problems in that case. So please play around with it for a second and post your results!

Thanks a lot!

regards, Thomas

David Barker

Tuesday 29 July 2003 4:36:40 pm

Hey!
I could do with info on this... I just tried to allow one of my classes to be read by an anonymous user but it didn't make a different when I tried!!

Thanks,
Dave

Thomas Brandl

Friday 01 August 2003 1:28:13 am

some "it's workin for me, so what's your problem dude?" would also be ok! Maybe it's been fixed in a later revision? Somebody have some info on this?

Thanks!

Esben Maaløe

Saturday 02 August 2003 4:08:35 am

Sometimes I get a cached version of the permission page. Try reloading when you see a page that definately seems wrong. Also when you edit permission - REMEMBER to click 'Store'.

It seems that it will hold on to your edits - but not apply them before you click store. So sometimes you have the actual permissions - and when you click edit you see a totally different set of perms (namely the ones you set up when you last edited without clicking store).

Thomas Brandl

Tuesday 05 August 2003 8:09:38 am

Hi Esben,

I have even tried to delete the cache after virtually every click.
The thing is, I don't want to upgrade my Linux Box to a version that supports svn, install svn, get the latest snapshot just to see that I'm still having the same problem afterwards.

Again, my version is 3.1-1 Revision: 2703.

Can anyone confirm, that this problem is not current anymore with a version > Rev. 2703?

Esben, you said sometimes you get a cached page with wrong policies? What version do you use?

I have absolutely no problems with bugs or unexpected behaviour, but if this one should not run smoothly, I would definitely prioritise this topic!

BTW: my current state is this: User Anonymous has NO rights at all in the moment, and can even access admin area - not able to change anything though ... not a caching problem, have deleted it a million times...

I simply want to find out, if the horrible bug is still in there or not, and if yes, make everyone aware of it and place on no. 1 of the todo list.

Just image this would be a live site I'd be working on and I would not be able to close down my clients area for anonymous users - I'd have to shut down my whole site - even worse - I wouldn't even realize the problem, because admin says "Anonymous has no rights at all!"

So come on girls, gimme a status ;)
cheers
Tom

Jan Åge Johnsen

Monday 22 September 2003 7:06:56 am

I have the same problem in ez 3.2, have anybody looked intro it ?

Lachy Laycock

Saturday 01 November 2003 9:34:08 am

I have the same problem on 3.2 as well, I cannot restrict the anonymous user from sections... this seems to me to be quite a serious issue, why isn't there more discussion on this topic?

Lachy Laycock

Saturday 01 November 2003 9:50:53 am

what is just as confusing is if i completely remove all all traces of the anonymous user and associated roles, then i can still have read access to the site!

Should this be?

bun taing

Tuesday 11 May 2004 6:09:33 am

I have the save problem. It seems to happen with Intranet setup when I setup Corporate it work fine.

eZ debug

Timing: Jan 18 2025 05:06:51
Script start
Timing: Jan 18 2025 05:06:51
Module start 'content'
Timing: Jan 18 2025 05:06:52
Module end 'content'
Timing: Jan 18 2025 05:06:52
Script end

Main resources:

Total runtime0.8163 sec
Peak memory usage4,096.0000 KB
Database Queries220

Timing points:

CheckpointStart (sec)Duration (sec)Memory at start (KB)Memory used (KB)
Script start 0.00000.0090 588.8594180.8359
Module start 'content' 0.00900.6759 769.6953691.2969
Module end 'content' 0.68490.1313 1,460.9922341.1641
Script end 0.8162  1,802.1563 

Time accumulators:

 Accumulator Duration (sec) Duration (%) Count Average (sec)
Ini load
Load cache0.00410.5011210.0002
Check MTime0.00150.1856210.0001
Mysql Total
Database connection0.00110.131410.0011
Mysqli_queries0.734890.01962200.0033
Looping result0.00220.26552180.0000
Template Total0.775295.020.3876
Template load0.00240.291720.0012
Template processing0.772894.677220.3864
Template load and register function0.00010.014810.0001
states
state_id_array0.00220.269210.0022
state_identifier_array0.00170.205720.0008
Override
Cache load0.00200.2425680.0000
Sytem overhead
Fetch class attribute can translate value0.00160.194170.0002
Fetch class attribute name0.00090.107790.0001
XML
Image XML parsing0.00090.114870.0001
class_abstraction
Instantiating content class attribute0.00000.001890.0000
General
dbfile0.00180.2240210.0001
String conversion0.00000.001130.0000
Note: percentages do not add up to 100% because some accumulators overlap

CSS/JS files loaded with "ezjscPacker" during request:

CacheTypePacklevelSourceFiles
CSS0extension/community/design/community/stylesheets/ext/jquery.autocomplete.css
extension/community_design/design/suncana/stylesheets/scrollbars.css
extension/community_design/design/suncana/stylesheets/tabs.css
extension/community_design/design/suncana/stylesheets/roadmap.css
extension/community_design/design/suncana/stylesheets/content.css
extension/community_design/design/suncana/stylesheets/star-rating.css
extension/community_design/design/suncana/stylesheets/syntax_and_custom_tags.css
extension/community_design/design/suncana/stylesheets/buttons.css
extension/community_design/design/suncana/stylesheets/tweetbox.css
extension/community_design/design/suncana/stylesheets/jquery.fancybox-1.3.4.css
extension/bcsmoothgallery/design/standard/stylesheets/magnific-popup.css
extension/sevenx/design/simple/stylesheets/star_rating.css
extension/sevenx/design/simple/stylesheets/libs/fontawesome/css/all.min.css
extension/sevenx/design/simple/stylesheets/main.v02.css
extension/sevenx/design/simple/stylesheets/main.v02.res.css
JS0extension/ezjscore/design/standard/lib/yui/3.17.2/build/yui/yui-min.js
extension/ezjscore/design/standard/javascript/jquery-3.7.0.min.js
extension/community_design/design/suncana/javascript/jquery.ui.core.min.js
extension/community_design/design/suncana/javascript/jquery.ui.widget.min.js
extension/community_design/design/suncana/javascript/jquery.easing.1.3.js
extension/community_design/design/suncana/javascript/jquery.ui.tabs.js
extension/community_design/design/suncana/javascript/jquery.hoverIntent.min.js
extension/community_design/design/suncana/javascript/jquery.popmenu.js
extension/community_design/design/suncana/javascript/jScrollPane.js
extension/community_design/design/suncana/javascript/jquery.mousewheel.js
extension/community_design/design/suncana/javascript/jquery.cycle.all.js
extension/sevenx/design/simple/javascript/jquery.scrollTo.js
extension/community_design/design/suncana/javascript/jquery.cookie.js
extension/community_design/design/suncana/javascript/ezstarrating_jquery.js
extension/community_design/design/suncana/javascript/jquery.initboxes.js
extension/community_design/design/suncana/javascript/app.js
extension/community_design/design/suncana/javascript/twitterwidget.js
extension/community_design/design/suncana/javascript/community.js
extension/community_design/design/suncana/javascript/roadmap.js
extension/community_design/design/suncana/javascript/ez.js
extension/community_design/design/suncana/javascript/ezshareevents.js
extension/sevenx/design/simple/javascript/main.js

Templates used to render the page:

UsageRequested templateTemplateTemplate loadedEditOverride
1node/view/full.tplfull/forum_topic.tplextension/sevenx/design/simple/override/templates/full/forum_topic.tplEdit templateOverride template
9content/datatype/view/ezxmltext.tpl<No override>extension/community_design/design/suncana/templates/content/datatype/view/ezxmltext.tplEdit templateOverride template
18content/datatype/view/ezxmltags/paragraph.tpl<No override>extension/ezwebin/design/ezwebin/templates/content/datatype/view/ezxmltags/paragraph.tplEdit templateOverride template
10content/datatype/view/ezxmltags/line.tpl<No override>design/standard/templates/content/datatype/view/ezxmltags/line.tplEdit templateOverride template
1pagelayout.tpl<No override>extension/sevenx/design/simple/templates/pagelayout.tplEdit templateOverride template
 Number of times templates used: 39
 Number of unique templates used: 5

Time used to render debug report: 0.0001 secs