From dafc19a8cc28924fed0d4210ccd0b8adca7d2eb5 Mon Sep 17 00:00:00 2001 From: Philip L. McMahon <philip.l.mcmahon@gmail.com> Date: Sun, 05 Feb 2012 01:01:35 -0500 Subject: [PATCH] Return command-specific rejection result if authz check fails. --- src/com/gitblit/DownloadZipFilter.java | 14 +++++++++++++- 1 files changed, 13 insertions(+), 1 deletions(-) diff --git a/src/com/gitblit/DownloadZipFilter.java b/src/com/gitblit/DownloadZipFilter.java index 6145b12..d22649b 100644 --- a/src/com/gitblit/DownloadZipFilter.java +++ b/src/com/gitblit/DownloadZipFilter.java @@ -57,6 +57,18 @@ } /** + * Determine if the action may be executed on the repository. + * + * @param repository + * @param action + * @return true if the action may be performed + */ + @Override + protected boolean isActionAllowed(RepositoryModel repository, String action) { + return true; + } + + /** * Determine if the repository requires authentication. * * @param repository @@ -78,7 +90,7 @@ */ @Override protected boolean canAccess(RepositoryModel repository, UserModel user, String action) { - return user.canAccessRepository(repository.name); + return user.canAccessRepository(repository); } } -- Gitblit v1.9.1