Session
Permissions & Security in Plone
Data security makes news headlines, often for the wrong reasons, when it has not been implemented correctly, or when it has been added to systems as an afterthought.
Plone is a secure, open source web content management system that is written in Python and has been under active development since 2001.
One of Plone's great strengths is its baked-in security model, which is comprised of:
- object- and field-level permissions
- roles
- groups
- workflow states, transitions, and guards
In this talk, I will explain the elements of Plone's time-tested security model and I will show how these elements work together to help developers create websites and web applications that are secure by default.
Photo: "The Vault" courtesy Brook Ward