Re: Why is manage_pasteObjects protected with "Modify portal content"?
Rok Garbas <[email protected]>
| Newsgroups | gmane.comp.web.zope.plone.devel |
|---|---|
| Message-ID | <20131209220250.9443.24880@oskar> |
Quoting Lukas Graf (2013-12-09 21:49:21) > > On Dec 9, 2013, at 8:28 PM, Sean Upton wrote: > > > The subject-line is self-explanatory: > > https://github.com/plone/Products.CMFPlone/blob/master/Products/CMFPlone/ > Portal.py#L46 > > https://github.com/plone/Products.Archetypes/blob/master/Products/ > Archetypes/BaseFolder.py#L42 > > https://github.com/plone/plone.dexterity/blob/master/plone/dexterity/ > content.py#L580 > > Ideally, this really should be 'Add portal content' -- so that folks > who have permission to view the content in source, and add content to > target can paste? > > [...] > > Is this a simple long-standing mistake that could eventually be > corrected? Am I missing something? If not, should I PLIP changing > this for Plone 5? > > > This is indeed a very old bug - see https://dev.plone.org/ticket/9177 > > While the work-arounds mentioned in that ticket work for Archetypes, for > Dexterity it's even worse: > At the time I encountered this, I couldn't find a way to get Dexterity > Containers to use AddPortalContent for manage_pasteObjects other than monkey > patching __ac_permissions__ directly like this: > https://gist.github.com/lukasgraf/7880348 > > I would love to see this PLIPped for Plone 5. > +1, this would be a really nice PLIP to have. -- Rok Garbas - http://www.garbas.si ------------------------------------------------------------------------------ Sponsored by Intel(R) XDK Develop, test and display web and hybrid apps with a single code base. Download it for free now! http://pubads.g.doubleclick.net/gampad/clk?id=111408631&iu=/4140/ostg.clktrk