login & rights > Bug (done?)

Default rights doesn't work as expected / #3871

Summary

done?
Jan 22, 2007
100%
Jan 22, 2007 / guest
Jun 2, 2008 / stenyak
 

Attached files

No files uploaded

Issue report

Minor
Have not tried
Apache/2.0.55 (Ubuntu) PHP 5.1.6
streber 0.0703
2006-10-27
  1. Log in with admin.
  2. Create project, and one private task in it.
  3. Log in with project manager.
  4. Look at the project created.

PROBLEM: You can view and edit the private task.

It doesn't work as expected according to Understanding user rights and profiles
You could not even view the private task.
 

3 Comments

fodber

Mar 29, 2007
I don't think this is minor
I feel that the whole authorization system is broken, because it doesn't work as written in the doc. Is this intentional or I'm misunderstanding something?

pixtur

Apr 5, 2007
very interesting...
I will have to check this.

pixtur

Apr 25, 2007
confirmed...
This is caused by PM having RIGHT_VIEWALL - which includes private items. The documentation was incorrect at this point. I changed the profile so that new persons with (or persons with profile reset to) "Project Manager" will not include this right.


 

Comment / Update