aboutsummaryrefslogtreecommitdiff
path: root/doc/todo/openid_user_filtering.mdwn
diff options
context:
space:
mode:
Diffstat (limited to 'doc/todo/openid_user_filtering.mdwn')
-rw-r--r--doc/todo/openid_user_filtering.mdwn13
1 files changed, 13 insertions, 0 deletions
diff --git a/doc/todo/openid_user_filtering.mdwn b/doc/todo/openid_user_filtering.mdwn
new file mode 100644
index 000000000..6a318c4c0
--- /dev/null
+++ b/doc/todo/openid_user_filtering.mdwn
@@ -0,0 +1,13 @@
+As mentioned on IRC, I think a cheap form of [[todo/ACL]] can be maintained using [OpenID in ikiwiki](http://packages.qa.debian.org/libn/libnet-openid-consumer-perl.html).
+
+Say I want to limit edits to [wiki.webvm.net](http://wiki.webvm.net/) to users of that machine. For the user 'hendry' I create a http://hendry.webvm.net/ OpenID (which actually delegates to http://hendry.myopenid.com/). And likewise for other users.
+
+So I suggest an ikiwiki configuration like:
+
+ users => ["*.webvm.net"],
+
+Would only allow edits from openIDs of that form.
+
+> This kind of thing can be [[done]] now: --[[Joey]]
+>
+> locked_pages => "* and !user(http://*.webvm.net/)"