crs-tools / tracker

CRS Ticket Tracker
Apache License 2.0
18 stars 11 forks source link

Change effective privileges in some cases #156

Closed a-tze closed 5 years ago

a-tze commented 6 years ago

Especially users having "high" roles but being restricted to some projects do have effectively access to many things they shouldnt have. Especially the global settings like workers, encoding profile (contents/properties) etc. should be inaccessible to a user that is restricted to projects.

jjeising commented 5 years ago

@a-tze With the new restricted superuser role, is this still an issue?

a-tze commented 5 years ago

@jjeising Forget what was originally here.

a-tze commented 5 years ago

Looks good