[ 
https://issues.apache.org/jira/browse/CLEREZZA-397?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel
 ]

Tsuyoshi Ito resolved CLEREZZA-397.
-----------------------------------

    Resolution: Fixed
      Assignee: Tsuyoshi Ito

> Usermanager access permissions: define permissions to access the usermanager
> ----------------------------------------------------------------------------
>
>                 Key: CLEREZZA-397
>                 URL: https://issues.apache.org/jira/browse/CLEREZZA-397
>             Project: Clerezza
>          Issue Type: Improvement
>            Reporter: Tsuyoshi Ito
>            Assignee: Tsuyoshi Ito
>
>  implemented 2 Permissions:
> PermissionManagerAccessPermission
> UserManagerAccessPermission
> Furthermore the GUI and the webservices checks the permissions of the current 
> user. if the latter has not assigned the permissions which he wants to add a 
> response 403 is returned. These checks are ontop of java permission and 
> should prevent endusers form misusage of the usermanager.webinterface.

-- 
This message is automatically generated by JIRA.
-
You can reply to this email to add a comment to the issue online.

Reply via email to