Part of my proposal is essentially to call policies roles and eliminate the existing "authority levels/roles". The levels are only valuable if you need users in the same user group with different capabilities, but the ability to do that just confuses people more, and it's so rarely needed that I don't think it's worth it.
In my scheme, roles would be lists of permissions and would determine what you can do and see as they did in Evolution.
I suspect that nothing at all is going to happen to permissions until MODX 3, so don't hold your breath.
It might be possible to implement that inside a wizard. I usually don't approve of wizards for MODX, but this might be an exception.
I can't speak for Susan, but I think she would say the same thing. Although I'm very active on the forums, I don't have many opportunities to do any arm twisting. I'm not part of the development team and I'm not involved in the discussions on where MODX is going unless I offer unsolicited advice -- which I don't do very often. In many cases, there are technical reasons why an idea that seems both easy and brilliant is incompatible with the underlying architecture.
With respect to security permissions -- I know the rules, but I don't fully understand how they are implemented in the architecture of MODX (though I have some guesses), so I know I'm not on solid enough ground to be twisting any arms.
I've made my suggestions for MODX 3, and as far as implementing them in 2.3, I think the team is stretched thin enough that it's not likely to happen. That's why I've been thinking about a wizard that could be installed as an extra.
There's already a Content Editor policy and it's a fairly trivial job to check more permissions on it so it does what you want (or, better, duplicate it and give the duplicated policy more permissions).
Okay Bob, I'll see if I can direct a developer here to give their take.
-
☆ A M B ☆
- 24,524 Posts
This has already been gone over several times. It's too complex, too much embedded into the core to make any major changes in the MODX 2 (Revolution) code base at this point.
It's not all that complicated:
Policy template - all permissions possibly necessary for the user - you can even use the Administrator template if you want to.
Policy - based on the template only with checkboxes, check the permissions to allow, clear the checkboxes for the rest.
Group - must have the desired policy for each context. May or may not be the same policy for all contexts.
You can specify minimum role for everything and everybody as "member" or "super user" as you please, just make sure it's always the same. Otherwise ignore it.
Don't edit one of the existing policy templates or policies, duplicate one or create your own.
Hi Susan,
Not asking for any code changes. That's the clever bit.
Just rows in a database, or XML file or however the pre-built in Policies are stored. And probably an Editor Group too to help steer folks away from Roles as far as possible. It won't be code.
So everybody gets a useful ContentEditor that does the stuff 98% to 99% of websites need.
As the wise man said: "Don't make me think".
-
☆ A M B ☆
- 3,112 Posts
Either this
Or this
[ed. note: goldsky last edited this post 11 years, 10 months ago.]
Rico
Genius is one percent inspiration and ninety-nine percent perspiration.
Thomas A. Edison
MODx is great, but knowing how to use it well makes it perfect!
www.virtudraft.com
Security, security, security! |
Indonesian MODx Forum |
MODx Revo's cheatsheets |
MODx Evo's cheatsheets
Author of
Easy 2 Gallery 1.4.x,
PHPTidy,
spieFeed,
FileDownload R,
Upload To Users CMP,
Inherit Template TV,
LexRating,
ExerPlan,
Lingua,
virtuNewsletter,
Grid Class Key,
SmartTag,
prevNext
Maintainter/contributor of
Babel
Because it's hard to follow all topics on the forum, PING ME ON TWITTER
@_goldsky if you need my help.