[Interchange-bugs] [Bug 139] Changed - admin groups have no effect
bugzilla-daemon@localhost.akopia.com
bugzilla-daemon@localhost.akopia.com
Tue, 27 Feb 2001 10:19:54 -0500
http://developer.akopia.com/bugs/show_bug.cgi?id=139
*** shadow/139 Tue Feb 27 10:16:31 2001
--- shadow/139.tmp.15808 Tue Feb 27 10:19:54 2001
***************
*** 30,32 ****
--- 30,43 ----
Created an attachment (id=4)
access.asc file from test store
+
+ ------- Additional Comments From jason@mediabang.com 2001-02-27 10:19 -------
+ The user was not explicitly granted any permissions, I setup an admin group with
+ restricted permissions (access.asc attached), and then created a new admin and
+ assigned him to that group, other than the group assignment no changes were made
+ to the user. After creation the user was still able to access nearly every
+ table (the only exception I could find was that he was not allowed to change his
+ own access permissions). Creating a new user and setting the users permissions
+ to match the group does restrict the activity of that user, but it appears that
+ either the permissions for the groups are not inherited by the admin, or the
+ default admin permissions are to allow everything.