So this is another attempt to solve my problem from another
thread. I have included screen shots and more info this time.
We have had ModX 2.x for some time now and for some reason I cannot figure out a new users group is ignoring the security settings.
We wanted to create a new user and group for Customer Service people to be able to edit content.
So in Resource Groups I made two groups one called Customer Service View and Customer Service Group (which will edit). We want users to be able to edit only certain pages content. So I put the top level Resource Folder called Water Resources into the View Group. I then added one page called Opening & Closing Accounts to the group. I did that because if I don't they cannot drill down to the individual page in the manager.
I then went into Access Controls and created a Customer Services group. Under context access I gave them member (9999) to Restricted Admin for mgr & web.
Under Resource Access I gave Customer Services View, Member to Load, List and View role for mgr and web. I gave the Customer Services Group Engineering Access Editor which is a custom security policy.
I also put both groups in the Administrator Group as Super User (see administrator.jpg)
I double checked Load, List and View and its still default with only Load, List and View (see shot).
I then made a user CS and give it member access to the Customer Service Group.
I have flushed both sessions and permissions and cleared cache.
However the problem I have is when I login and open the Customer Service Pages I can edit any of the child resources, when I shouldn't. I should only be able to see they are there. So it's ignoring the Load, List and View permission for some reason.
This is a match to all the other users as far as I can see as well.
So I am still stumped. Anyone have any ideas?