We launched new forums in March 2019—join us there. In a hurry for help with your website? Get Help Now!
    • 9207 ☆ A M B ☆
    • 2,475 Posts
    The MODX permissions are... complex. The simple use case here is having one User Group with access to one set of resources and another User Group with access to another set of resources.

    So no problem: we create User Groups and Resource Groups for each, associate the 2 together with a rule for context access for the manager and another rule for resource group access and we're done...

    Except that the default pages in the site are openly editable by either group. If they are not associated with one Resource Group or another, either User Group can see/edit them.

    Is there a way have a User Group with permissions ONLY to view/edit stuff inside a given Resource Group and have it hide/ignore/protect resources that are not any explicit Resource Group?

    This question has been answered by BobRay. See the first response.

    • discuss.answer
      • 3749
      • 24,544 Posts
      The only easy way to protect Resources is by putting them in a Resource Group. The DefaultResourceGroup extra (http://bobsguides.com/defaultresourcegroup-tutorial.html) will put everything a resource group as it's created. If the Resource Group is called AllDocs, you then just create a Resource Group Access ACL entry that links the AllDocs Resource Group to the Administrator User Group. That way any users not in the Administrator group will only have access to Resources they've been given access to in another Resource Group Access ACL entry.

      You could possibly do it with a plugin, but I think the DefaultResourceGroup is a much easier solution.
        Did I help you? Buy me a beer
        Get my Book: MODX:The Official Guide
        MODX info for everyone: http://bobsguides.com/modx.html
        My MODX Extras
        Bob's Guides is now hosted at A2 MODX Hosting