Ensure only "Staff" get to add-community
Bug #327307 reported by
Paul Everitt
Affects | Status | Importance | Assigned to | Milestone | |
---|---|---|---|---|---|
KARL3 |
Fix Released
|
Medium
|
Chris McDonough |
Bug Description
The add-community view needs a security policy where only "staff" (members of the /osi community?) get to add a community.
Changed in karl3: | |
importance: | Undecided → Medium |
milestone: | none → m2 |
Changed in karl3: | |
assignee: | nobody → chrism-plope |
Changed in karl3: | |
status: | Fix Committed → Fix Released |
To post a comment you must log in.
People with the "create" permission relative to the root can add a community. In the OSI configuration, this is group.KarlStaff, group.KarlModer ator, and group.KarlAdmin.