← Back to team overview

dhis2-devs team mailing list archive

Re: [Dhis2-users] user roles, access control

 

Dears,

For me, i will YES. This
restriction is still very neccessary.
 
Since they have same or equal
level of previledge, the restriction should remain.
 
Thank you.
_ _ _ _ _ _ _ _
Bayo Mohammed, ONIMODE, mbcs |Database/IT Specialist
USAID/Nigeria Monitoring
and Evaluation Management Services (MEMS-II)
#17 Euphrates Crescent, Maitama, Abuja. 
Telephone:+234-9-4610670 or 4610671. Fax: +234-9-4610672. | Mobile: +234-809-812-3465,
+234-803-624-3853
www.new.nigeriamems.com



On Friday, 14 March 2014, 11:34, Lars Helge Øverland <larshelge@xxxxxxxxx> wrote:
 
Hi all,

an issue where input is needed from the community:

Currently, one rule for user management says that users cannot see nor edit users which have granted the same user roles as themselves.

The rationale for this restriction is e.g. that district officers should not be able to create other district officer user accounts.

Is this restriction still necessary? 

Reason for asking is that some organisations have started designing user roles in a way where you a have a larger number of user roles focused on topics, and user roles are mixed and matched when creating new users. This restriction does not work well in this scenario.

A second rule is that users can only see other users for which they have all of their authorities. This restriction will remain.

regards,

Lars

_______________________________________________
Mailing list: https://launchpad.net/~dhis2-users
Post to     : dhis2-users@xxxxxxxxxxxxxxxxxxx
Unsubscribe : https://launchpad.net/~dhis2-users
More help   : https://help.launchpad.net/ListHelp

Follow ups

References