Christopher McRae
Fri, 10 Sep 1993

I've read through your documentation and it looks good except for
one issue: there is no provision for controlling access *per method*.
Once we have implemented the PUT and POST methods of HTTP, I expect
it will be quite common for a webmaster to wish readers relative to the number of writers for a particular resource.
I suggest that you add a <methods> field to the .www_acl file, such

method,method,...:template: group,user,group,...

or some other syntax. Alternatively, you could specify the methods in
the rule file, but the access list seems a better place to me.
Also, could you clarify some thing for me? Regarding the <template>
specified in the protect rule of the rule file and also in each entry of
the access control list: Does this <template> refer only to files or can
it be a subdirectory - the latter indicating that the entire hierarchy
is to be accessible only to those in the corresponding user/group list?
In <> you

The protect rule has two forms unifrom with those of the pass rule:

protect <template>

The filename matching the <template> is protected...

and also in

template is the name of a file in that directory

