Limiting assignment of roles
I put this in the Ideas Forum, but I thought it might be of interest here:
Once a user has the Manager role (global), they then can create users and groups that are assigned the Administrator role (global). This is not a very secure way of doing things, especially in a distributed environment such as ours.
It ties in with a previous suggestion that to break down role creation to "global" vs. "site":
http://ideas.hannonhill.com/forums/52559-cascade-ideas/suggestions/...
Discussions are closed to public comments.
If you need help with Cascade CMS please
start a new discussion.
Keyboard shortcuts
Generic
? | Show this help |
---|---|
ESC | Blurs the current field |
Comment Form
r | Focus the comment reply box |
---|---|
^ + ↩ | Submit the comment |
You can use Command ⌘
instead of Control ^
on Mac
Support Staff 1 Posted by Tim on 09 Nov, 2010 08:48 PM
Hi there,
It sounds like users in your instance have READ access to the Administrator Role. Try this:
Now, the ability for Managers to create new users as Administrators should not be an option.
Let me know if this helps.
2 Posted by jkreuzig on 09 Nov, 2010 09:10 PM
Tim,
All I can say is DOH! I don't know why I didn't think about this. I guess I have spent to much time staring at this to see the obvious solution!
Thanks!
Jim
jkreuzig closed this discussion on 09 Nov, 2010 09:10 PM.