Hi,
I’ve been messing around for some time now with the manager access rights. I want to create a user that
can create other users but cannot delete/edit the admin user that was created first. Or maybe not even
view that user.
By the way, is it normal...that when i delete all rights to the home screen it immediatly says "Error: You have
no access". Shouldn’t it just be empty? Because i CAN see all other stuff. And also when i remove rights
for resources/files/snippets/chunks etc there’s still the 5px gray border from the container. Is that
normal as well?
Thanks in advance.
-
MODX Staff
- 10,725 Posts
At the moment, user management permissions are blanket for a particular User Group and Group Membership Role (i.e. Super User vs. Member, etc.).
I think we’re going to have to add an ACL to allow user management policies to be assigned between User Groups, i.e. Group A "Super Users" can see an manage Group A "Members" but Group A "Members" cannot see or manage the "Super Users". Can you enter a feature request for this? We’ll see if we can slip it in to the 2.0.0 release; it shouldn’t be too difficult as all of the infrastructure for creating new ACL tables/classes is already in place. Some work on the UI will likely be necessary and non-trivial though.