access policies--

  • From: "Jill Ray" <jill@xxxxxxxxxxxxxxx>
  • To: isalist@xxxxxxxxxxxxx
  • Date: Fri, 24 Jan 2003 10:56:41 -0700

When authenticating by user, it is better to assign policies by 
1.  denying all first, then allowing by user/group
2.  allowing all first, then denying by user/group

Is one trickier than the other?

Thanks in advance for your help,
Jill


Other related posts: