MCR ACL System should work against MCRUserInformation instead of the userID String

Description

1. To implement the user validation in REST-API properly we need to provide the complete MCRUserInformation Object to the MCR ACL-System and not only a string.

2. MCRUserClause and MCRGroupClause should validate against the MCRUserInformation which is provided as parameter and not the userInfo stored in the current MCRSession

Environment

None

Assignee

Robert Stephan

Reporter

Robert Stephan

Labels

None

URL

None

External issue ID

None

Components

Fix versions

Affects versions

Priority

Medium
Configure