Jacques Dainat
2016-07-12 13:05:29 UTC
Hello !
Sorry for the inconvenience if it has been already discussed before.
Iâm managing a Webapollo installation containing many organisms. For each organism I was thinking to create a user with extra rights to give the possibilities to add users. In other term, Iâ m the admin of the webapollo instance, And I would like to create an âorganism's adminâ for each organism. To do so, under user tab, I go to the Organisms sub-tab and add the admin right to the user. Until here everything is fine.
But I realised that the âorganism's adminâ can access to all the users, even those from other organisms, see them and is able to remove them.
He can as well see under the Admin tab information from other organisms like using the Report::Organism link.
Is it a behaviour that can be modified ? If not, is it something you plan to fix/modify in futur webapollo versions ?
In my sense, the perfect behaviour, for this kind of "user-adminâ would be:
- not be allowed to add New organism in the Organism tab
- not see the Users that are not working on the same organism (in the Users tab)
- not be allowed to remove users that are not related to its organism (related to the previous point)
- see only the groups he created / or he is part from (Groups tab)
- Avoid to access information not related to organism he is related to in the Admin tab (or even not at all access this tab)
Thank you for your work and the very nice tool you provide !!
Best regards,
Jacques Dainat, PhD
NBIS (National Bioinformatics Infrastructure Sweden)
Genome Annotation Service
Sorry for the inconvenience if it has been already discussed before.
Iâm managing a Webapollo installation containing many organisms. For each organism I was thinking to create a user with extra rights to give the possibilities to add users. In other term, Iâ m the admin of the webapollo instance, And I would like to create an âorganism's adminâ for each organism. To do so, under user tab, I go to the Organisms sub-tab and add the admin right to the user. Until here everything is fine.
But I realised that the âorganism's adminâ can access to all the users, even those from other organisms, see them and is able to remove them.
He can as well see under the Admin tab information from other organisms like using the Report::Organism link.
Is it a behaviour that can be modified ? If not, is it something you plan to fix/modify in futur webapollo versions ?
In my sense, the perfect behaviour, for this kind of "user-adminâ would be:
- not be allowed to add New organism in the Organism tab
- not see the Users that are not working on the same organism (in the Users tab)
- not be allowed to remove users that are not related to its organism (related to the previous point)
- see only the groups he created / or he is part from (Groups tab)
- Avoid to access information not related to organism he is related to in the Admin tab (or even not at all access this tab)
Thank you for your work and the very nice tool you provide !!
Best regards,
Jacques Dainat, PhD
NBIS (National Bioinformatics Infrastructure Sweden)
Genome Annotation Service