<?xml version="1.0" encoding="utf-8"?>
<rss version="2.0">
	<channel>
		<title><![CDATA[Enano support forums - Old revisions are viewable by everybody]]></title>
		<link>http://forum.enanocms.org/topic/15/</link>
		<description><![CDATA[The most recent posts in Old revisions are viewable by everybody.]]></description>
		<lastBuildDate>Sun, 18 Jan 2009 22:28:42 +0000</lastBuildDate>
		<generator>PunBB</generator>
		<item>
			<title><![CDATA[Re: Old revisions are viewable by everybody]]></title>
			<link>http://forum.enanocms.org/post/55/#p55</link>
			<description><![CDATA[<p>I&#039;m pretty sure the permission you&#039;re looking for is &quot;View history/diffs&quot;, though I&#039;m not sure how enforced this is. I&#039;ll check on the code to make sure it&#039;s being enforced and post back.</p><p>Edit: I do know that listing old revisions always has been pretty well enforced.</p><p>--Dan</p>]]></description>
			<author><![CDATA[dummy@example.com (Dan)]]></author>
			<pubDate>Sun, 18 Jan 2009 22:28:42 +0000</pubDate>
			<guid>http://forum.enanocms.org/post/55/#p55</guid>
		</item>
		<item>
			<title><![CDATA[Old revisions are viewable by everybody]]></title>
			<link>http://forum.enanocms.org/post/49/#p49</link>
			<description><![CDATA[<p>I ran into this issue yesterday while linkchecking an enano site - older revisions of pages were found.</p><p>This poses two problems - for one, makes checking links hard (because those old pages link to inexistent pages) and two, allows everybody to view an older revision. Most likely, the page has been corrected for a reason - and thus shouldn&#039;t be viewable to everybody (just admins is fine). Maybe there is an ACL rule for this - but the only relevant one, rollback history, is set to &quot;disallow&quot; already.</p>]]></description>
			<author><![CDATA[dummy@example.com (Vadi)]]></author>
			<pubDate>Sun, 18 Jan 2009 19:48:24 +0000</pubDate>
			<guid>http://forum.enanocms.org/post/49/#p49</guid>
		</item>
	</channel>
</rss>
