Re: Auth_Groups and Auth_Permissions

From: Date: Sun, 15 Aug 2004 15:52:41 +0000
Subject: Re: Auth_Groups and Auth_Permissions
References: 1 2  Groups: php.pear.dev 
Request: Send a blank email to pear-dev+get-32686@lists.php.net to get a copy of this message
Paul M Jones wrote:
Lukas Smith wrote:
Anyways in the end if you want to make this a separate project you should be aware that you will need a lot of maintaing. Auth/Perm packages seem to need a lot of love. :-)
Lukas speaks with wisdom and from experience. :-) But Auth (proper) by itself seems to have been very BC-stable (1.3.0 beta issues aside). I cannot think that a group-reader will be that bad; perhaps I will be proved wrong.
I just want to warn about one more thing. The second you have user groups, you also want to have sub groups. The second you have permissions, you also want to have roles. And the second you have roles, you also want to have sub roles. The second you have roles you also need to think about what happens if you want to be able to disallow rights that users get from roles. This is just a quick list from the experiences that I gained by developing LiveUser. The point is: LiveUser is flexible and powerful. This is only annoying when you start up but from then on they will start asking for exactly this flexibility. So if this task is to go underway I urge the people in question to really sit down and write what are the limits of the given packages. Otherwise we will soon have yet another LiveUser in PEAR, as the developers want to scale up the functionality with their needs. Also what we have done with Auth in LiveUser is the perfect PEAR thing .. we simply assimilated it. Therefore it would be great if we can do the same thing for Auth_Groups and Auth_Permissions. Actually we already have configurable tables and columns names for groups, we dont have for permissions yet though. So essentially what I am asking is that these packages if they are not build inside LiveUser will have clear defined limits as to their functionality to retain the advertised simpleness and that some effort is made to allow users to scale up using LiveUser if these limits need to be stepped beyond. *disclaimer* if someone can proof that LiveUser design is needlessly complex for the goals it tries to achieve and has some ideas it would be nice to hear them in order to fix them in LiveUser as long as we are still in beta regards, Lukas

« previous php.pear.dev (#32686) next »