Hello,

I have installed Lenya* **1.2.4** , *Cocoon* **2.1.7 and Apache Tomcat 5.0.28.***

*I created a user “testuser” and have assigned him to the group “testgruppe”. The group “testgruppe” now becomes the right “visit” to a page in the area “AC Auth”. Now my problem is, if I’ am logging in as the “testuser” I have the right to change the right of my own and even add rights to other users in the “AC Auth” area. This shouldn’t be possible because as “testuser” in my configuration I only have the right to visit “AC Auth” area.
*

*I searched in the web and so I found a demo publication (http://lenya.zones.apache.org:8888/index.html) where the conditions are the same. When I add the group “testgruppe” and the user “testuser” as described above I have the same problem. *

*But I also found a demo publication (https://cms.unizh.ch/lenya/sandbox/authoring/index.html;jsessionid=1D453A6EE39D551044E1623C3545C3AB?lenya.usecase=login&lenya.step=showscreen <https://cms.unizh.ch/lenya/sandbox/authoring/index.html;jsessionid=1D453A6EE39D551044E1623C3545C3AB?lenya.usecase=login&lenya.step=showscreen>) where it works like it should. If I add the group “testgruppe” and the user “testuser” as described above the user “testuser” hasn’t the right to change the rights of himself or even add rights of other users in the “AC Auth” area. This functionality is correct because the user “testuser” only has the right to visit “AC Auth” area.*

*How could I configure my system that it works like in the second case? Could anyone give me a hint? *

*Thanks in advance.*

*Roland***


---------------------------------------------------------------------
To unsubscribe, e-mail: [EMAIL PROTECTED]
For additional commands, e-mail: [EMAIL PROTECTED]

Reply via email to