Page 1 of 1

security per group

PostPosted:Wed Aug 29, 2012 10:53 am
by rasha123
HI,

i have a quistion , if some one could clarify this for me please.
i have openkm 5.1.10 installed and configured with ldap.

i set up users of active directoey under user role and role according to thier departments : IT , HR, FINANCE, ...

and the adimin role for admins.

now the quistion is , why when a user in IT creates folder and files in the folder tree, it can be sen and accessed by othe departments under diffrent role HR for instance??
should the viewing of folders supposed to be by roles?

i tried to edit security and add only group IT with full access. but still when i log with diffrent user diffrent role i can see the whole files and acces them
i tried to remove user role from security ( as i understand i have to assign every user to userrole or he will not be able to login to openkm) still got the same.

any help plz? im really confused here! becouse i thought one of the purpeses of openkm is privacy per department


thanksss :)

Re: security per group

PostPosted:Fri Aug 31, 2012 9:52 am
by jllort
UserRole should not be propagated across repository althought all users should have it, only for login purpose ( pass login page, nothing else ). Remove in all repository nodes.

Take a look at administration, see which roles has users. If user has rolex and roley and rolex only have read grant and roley has read and write then user will inherits read and write that's the idea.

Re: security per group

PostPosted:Sat Sep 01, 2012 11:43 am
by rasha123
thanks :)