michaellaunay / alirpunkto

0 stars 0 forks source link

The groups to which the user is susceptible to belong should be managed as dynamic groups #65

Closed SergioArbarviro closed 5 months ago

SergioArbarviro commented 7 months ago

The applications using the LDAP directory managed by AlirPunkto allocate rights according to the group to which the user belongs.

I propose that AlirPunkto manage groups that contain all users belonging to one group as defined by the connected applications, in the form of dynamic groups. These groups should be, in increasing order of rights:

There is no need for a group of all users present in the directory (= i.e. including those Cooperators that have resigned, are no longer active, but whose Identity data - names, surnames and date of birth - are kept during the Quarantine period to avoid immediate re-registration following the deterioration of their reputation), because their very presence implies that they belong to it.

SergioArbarviro commented 5 months ago

Done in alirpunkto/init.py