Practical Applications of Zend_Acl

Rowan Merewood (09.Oct.2010 at 15:00)
Talk at PHP North West 2010 (PHPNW10) (English - UK)

Rating: 5 of 5

Access Control Lists are a tool that allows us to map permissions to objects - within Zend_Acl this maps to a hierarchical arrangement of roles and resources.

This talk will follow through the basic use of Zend_Acl and steadily build a series of practical examples to illustrate the different methods of creating and enforcing an ACL for an application. This will include how to implement some of the more complicated hierarchical relationships and advanced conditions through the use of assertions. We will also cover the design considerations of where to attach the ACL, with the differences between applying it to controllers or models. With a functioning ACL in place, we will examine some of the methods for persisting the list and whether that list should be static or dynamic.

Alongside the straight functionality of our code, we will also examine how to effectively unit test it, improving its performance and analysing the level of security that has been created.

Who are you?

Claim talk

By clicking this button you are declaring that you are the speaker responsible for it and a claim request will be sent to the administrator of the event.

If the claim is approved you will be able to edit the information for this talk.

Are you sure?

 
Comments closed.

Comments

Rating: 5 of 5

09.Oct.2010 at 14:26 by Kathryn Reeve

Rowan's excellent delivery and witty charm won me over and continued to make me feel comfortable with the subject matter throughout his talk.

Rating: 5 of 5

09.Oct.2010 at 16:37 by Ian Barber

Rowan really knew his topic, and is an excellent speaker. Really enjoyed the depth into the topic - it was nice to have a practical code examples, star trek aside!

Rating: 5 of 5

09.Oct.2010 at 17:03 by Johanna Cherry

Expert delivery. The middle bit was a bit code heavy for my tastes in a talk but I understand what you were getting at.

Rating: 5 of 5

09.Oct.2010 at 18:39 by Andrew Collington

Although he might invite criticism, it really is hard to fault Rowan's delivery stuff. It was very easy going, which showed comfort with the topic, and his presentaion style was great. Although the basic concepts of using Zend_Acl could be learned from the framework's manual, it was good to hear when it's best to (and not to) use assertions and various other methods.

Rating: 5 of 5

10.Oct.2010 at 01:00 by Devis Lucato

Good Star Trek... ehm... ZF talk by Rowan. The coding slides were a bit too many but gave a proper idea about the freedom of implementation, the challenges of ACL and the choices to make. Not sure Kirk would have appreciated all the permissions granted to all those people but the "logic" was impeccable and greatly helpful in real world applications.

Rating: 5 of 5

10.Oct.2010 at 12:31 by Simon Griffiths

Excellent talk with superb star trek examples ;) I've never delved into assertions but will be now!

Rating: 4 of 5

10.Oct.2010 at 17:06 by Rob Allen

A good talk by a good speaker. Nice to see assertions being covered as the ZF manual's coverage of them is woeful. Possibly a little too many consecutive code slides making it hard to keep track and I'd have liked a little more strategies for how to choose your ACL organisation.

Rating: 5 of 5

23.Oct.2010 at 18:10 by

The jokes either told by Rowan or hidden in the content of the slides made this talk stand out from the rest. It was an interesting and highly technical talk that made quite a few things in the ACL worlds clear for me. He made me feel better about my own frustrations by saying that ACL was complicated, which I had only hitherto suspected ;)

Cloud server hosting by Combell Combell      © Joind.in 2012