All of my users are defined at the root level. One of them did a lot of work on my site and has local roles and owned objects all over the place. I deleted him from the acl_users. My question is, can he still access everything for which he has a local role? Or does the act of removing him from acl_users make all his local roles irrelevant? __________________________________________________________________ The NEW Netscape 7.0 browser is now available. Upgrade now! http://channels.netscape.com/ns/browsers/download.jsp Get your own FREE, personal Netscape Mail account today at http://webmail.netscape.com/
Have you tried to Undo the delete operation (Undo Tab). -aj --On Montag, 3. Februar 2003 11:30 -0500 baiewola@netscape.net wrote:
All of my users are defined at the root level. One of them did a lot of work on my site and has local roles and owned objects all over the place. I deleted him from the acl_users.
My question is, can he still access everything for which he has a local role? Or does the act of removing him from acl_users make all his local roles irrelevant?
__________________________________________________________________ The NEW Netscape 7.0 browser is now available. Upgrade now! http://channels.netscape.com/ns/browsers/download.jsp
Get your own FREE, personal Netscape Mail account today at http://webmail.netscape.com/
_______________________________________________ Zope maillist - Zope@zope.org http://mail.zope.org/mailman/listinfo/zope ** No cross posts or HTML encoding! ** (Related lists - http://mail.zope.org/mailman/listinfo/zope-announce http://mail.zope.org/mailman/listinfo/zope-dev )
--------------------------------------------------------------------- - Andreas Jung http://www.andreas-jung.com - - EMail: andreas at andreas-jung.com - - "Life is too short to (re)write parsers" - ---------------------------------------------------------------------
On Monday 03 February 2003 05:30 pm, baiewola@netscape.net wrote:
All of my users are defined at the root level. One of them did a lot of work on my site and has local roles and owned objects all over the place. I deleted him from the acl_users.
My question is, can he still access everything for which he has a local role? Or does the act of removing him from acl_users make all his local roles irrelevant?
I think the local role still exists, but he cannot log in if you have deleted him from the acl_users folder. -- Gitte Wange Technical Manager Email: gitte@mmmanager.org Web: http://www.mmmanager.org Tlf: +45 36 46 20 02 Zope.org has finally hit the 2gb barrier. I have taken it down for the moment, whilst I work out what to do. -- Ethan Mindlace, 24 Aug 2000
baiewola@netscape.net wrote at 2003-2-3 11:30 -0500:
All of my users are defined at the root level. One of them did a lot of work on my site and has local roles and owned objects all over the place. I deleted him from the acl_users.
My question is, can he still access everything for which he has a local role? Or does the act of removing him from acl_users make all his local roles irrelevant? No.
*BUT* the objects he owned may no longer work as before. This is because the effective permissions an object is executed with is the intersection of the owners permissions and that of the current users permissions. After you deleted the user, he no longer has any permissions. His former objects can only access methods accessible by "Anonymous". If you do not like this, you must reassign ownership for the respective objects. Dieter
participants (4)
-
Andreas Jung -
baiewolaï¼ netscape.net -
Dieter Maurer -
Gitte Wange