Hi everyone.
Is there an "easy" way to implement roles and permissions like in Wordpress ?
I was thinking of Contributor and Author roles especially.
https://codex.wordpress.org/Roles_and_Capabilities
Author – somebody who can publish and manage their own posts.
Contributor – somebody who can write and manage their own posts but cannot publish them.
The idea is just to give specific users access to the blog and their respective content only. ( I am using Articles )
Thanks.
Webdesigner and musician.
-
☆ A M B ☆
- 24,524 Posts
No. MODX ACLs are not easy no matter how you look at it.
Quote from: sottwell at Mar 16, 2016, 12:31 PMNo. MODX ACLs are not easy no matter how you look at it.
:'(
And is it easy to learn ?
Cause I haven't found much about it.
I think these roles/permissions should be installed in modx by default.
Webdesigner and musician.
-
☆ A M B ☆
- 24,524 Posts
The permissions system has several parts.
- Policy Templates - contain the permissions a policy can allow
- Policy - assigned a Policy Template, has checkboxes for the permissions the Policy template allows. You can use the full Administrator template for your policy, and just clear the checkboxes of permissions you don't want.
- Roles - permission level within a user group, 0 is all permissions (I ignore these, they just complicate things).
- User Group - provides the permissions of the Policy it is assigned to.
- Users - assigned to a group, also to a Role within that group. Inherit the permissions of their group or groups.
- Resource Groups - connected to User Groups. Resources assigned to a Resource Group can only be accessed by users in the connected group or groups. A Resource Group must be connected to a User Group before its resources are actually protected.
MODX installs with several Policy Templates and Policies, but only two groups, the (anonymous) group for front-end visitors, and the Administrator group which has all permissions for the "mgr" context. A "sudo" user overrides all permissions and can do anything anywhere.
This ACL system was designed with corporate teams in mind, which makes it overly complicated and awkward for simple, basic permissions that 99% of MODX sites need. This problem is recognized, and the next iteration of MODX will have a simpler basic permissions system.