Re: Auth_Groups and Auth_Permissions

From: Date: Sun, 15 Aug 2004 16:18:12 +0000
Subject: Re: Auth_Groups and Auth_Permissions
References: 1 2 3  Groups: php.pear.dev 
Request: Send a blank email to pear-dev+get-32688@lists.php.net to get a copy of this message
On Sun, 15 Aug 2004 17:52:41 +0200, Lukas Smith <lsmith@php.net> wrote: > Paul M Jones wrote: > > > Lukas Smith wrote: > > > >> Anyways in the end if you want to make this a separate project you > >> should be aware that you will need a lot of maintaing. Auth/Perm > >> packages seem to need a lot of love. :-) > > > > > > Lukas speaks with wisdom and from experience. :-) > > > > But Auth (proper) by itself seems to have been very BC-stable (1.3.0 > > beta issues aside). I cannot think that a group-reader will be that > > bad; perhaps I will be proved wrong. > > I just want to warn about one more thing. > The second you have user groups, you also want to have sub groups. > The second you have permissions, you also want to have roles. And the > second you have roles, you also want to have sub roles. > The second you have roles you also need to think about what happens if > you want to be able to disallow rights that users get from roles. > Sub groups will probably be included, simply because they're not actually that hard to implement. Roles however probably won't unless someone can give me a *really* compelling reason - I've never seen the difference between roles and groups, and if there is one, it's something to be handled by more complex packages. > This is just a quick list from the experiences that I gained by > developing LiveUser. The point is: LiveUser is flexible and powerful. > This is only annoying when you start up but from then on they will start > asking for exactly this flexibility. > > So if this task is to go underway I urge the people in question to > really sit down and write what are the limits of the given packages. > Otherwise we will soon have yet another LiveUser in PEAR, as the > developers want to scale up the functionality with their needs. Also > what we have done with Auth in LiveUser is the perfect PEAR thing .. we > simply assimilated it. Therefore it would be great if we can do the same > thing for Auth_Groups and Auth_Permissions. Actually we already have > configurable tables and columns names for groups, we dont have for > permissions yet though. > Definately - I don't think any PEAR package should be anything but flexible in things like column names etc. > So essentially what I am asking is that these packages if they are not > build inside LiveUser will have clear defined limits as to their > functionality to retain the advertised simpleness and that some effort > is made to allow users to scale up using LiveUser if these limits need > to be stepped beyond. > Also a definate, the idea of these packages is to provide a simple model, and nothing more. If you want to incorporate them into LiveUser once they're done, that would be excellent news for both packages I think, since I wouldn't want to lock people into a simple model. > *disclaimer* > if someone can proof that LiveUser design is needlessly complex for the > goals it tries to achieve and has some ideas it would be nice to hear > them in order to fix them in LiveUser as long as we are still in beta > > regards, > Lukas > > > > -- > PEAR Development Mailing List (http://pear.php.net/) > To unsubscribe, visit: http://www.php.net/unsub.php > >

« previous php.pear.dev (#32688) next »