David Anderson
Posts: 26
Nickname: tfhma
Registered: Oct, 2005
|
David Anderson is a software generalist in Cincinnati doing Ruby and Rails in the agile style.
|
|
|
|
Users, Roles, Rights and Sights
|
Posted: Nov 26, 2008 8:53 AM
|
|
|
This post originated from an RSS feed registered with Ruby Buzz
by David Anderson.
|
Original Post: Users, Roles, Rights and Sights
Feed Title: def..end
Feed URL: http://feeds.feedburner.com/Defend
Feed Description: Ruby, Rails, and a smattering of other cruft from the back of Dave's mind.
|
Latest Ruby Buzz Posts
Latest Ruby Buzz Posts by David Anderson
Latest Posts From def..end
|
|
Chad Fowler's Rails Recipes book lays out authorization as the interrogation of the many-to-many connections between users and roles, and between roles and rights, a right being a named controller-action pair. The many-to-many relationships are established using roles_users and rights_roles tables in the database.
This indirection makes bulk assignment of rights easy, simply by assigning roles
Read: Users, Roles, Rights and Sights
|
|