On 5/15/07, Werner Donné <werner.donne@re.be> wrote: > That is true. You have to join with the ACEs granting or > denying the "read", "read-acl", "read-current-user-privilege-set" > and "all" privileges. The result set should then be matched > with the current user. This can't be part of the same join, > because of group memberships. They can be part of the same join if you keep a separate table of the transitive closure of group memberships. -TimReceived on Tuesday, 15 May 2007 13:00:48 GMT
This archive was generated by hypermail 2.2.0+W3C-0.50 : Tuesday, 2 June 2009 18:44:15 GMT