• [4.0] Privileges group / user

  • We tried to make OpenKM as intuitive as possible, but an advice is always welcome.
We tried to make OpenKM as intuitive as possible, but an advice is always welcome.
Forum rules: Please, before asking something see the documentation wiki or use the search feature of the forum. And remember we don't have a crystal ball or mental readers, so if you post about an issue tell us which OpenKM are you using and also the browser and operating system version. For more info read How to Report Bugs Effectively.
 #3876  by bidouille
 
Hello,

My user "intranet" is in UserRole group but has only read access on a document.
grant_access.jpg
grant_access.jpg (24.19 KiB) Viewed 2826 times
But he can still move or delete.

I don't understand
 #3901  by jllort
 
You must not propagate UserRole grant because is used for all users to get connection, It might be deleted from okm:root at first time by administrator and create your own roles there.

Privileges are grants roleX + grants roleY ( and UserRole has write and read grants ) that's the reason
 #3917  by bidouille
 
jllort wrote:It might be deleted from okm:root at first time by administrator and create your own roles there.
OK but I already create some users. Can I roll back?
jllort wrote:You must not propagate UserRole grant
Argh! A warning message will be welcome to prevent it.
 #3987  by pavila
 
Well, it depends on your security policy. This goes into the "best practices" manual ;)

About Us

OpenKM is part of the management software. A management software is a program that facilitates the accomplishment of administrative tasks. OpenKM is a document management system that allows you to manage business content and workflow in a more efficient way. Document managers guarantee data protection by establishing information security for business content.