We launched new forums in March 2019—join us there. In a hurry for help with your website? Get Help Now!
    • 10378
    • 375 Posts
    Hello,

    I tried to create an ACL which enables a user from one group to only see and edit users from his own group and users of a specific other group (MODx Revo 2.2):

    I have the following groups:

    context1Admin
    context2Admin
    context3Admin
    RegisteredUsers

    e.g.: contextAdmin1 should be able to see/edit users from his own group and from "RegisteredUsers"

    Currently each contextAdmin even can delete a Administrator (Super User)!

    How can this be done?
      Freelancer @bitego http://www.bitego.com
      ---
      GoodNews - one of the most advanced and integrated Group Mailer premium add-ons for MODX Revolution!
      More infos here: http://www.bitego.com/extras/goodnews/
      • 3749
      • 24,544 Posts
      I don't think this is possible at this time (I could be wrong). If a user has permission to edit other users, he or she can edit any user.

      As a workaround, you could use the UpdateProfile snippet in the front end and write a snippet that forwards the users somewhere if the user they are trying to edit is not in the correct group.



      ---------------------------------------------------------------------------------------------------------------
      PLEASE, PLEASE specify the version of MODX you are using . . . PLEASE!
      MODX info for everyone: http://bobsguides.com/modx.html
        Did I help you? Buy me a beer
        Get my Book: MODX:The Official Guide
        MODX info for everyone: http://bobsguides.com/modx.html
        My MODX Extras
        Bob's Guides is now hosted at A2 MODX Hosting