Please upgrade here. These earlier versions are no longer being updated and have security issues.
HackerOne users: Testing against this community violates our program's Terms of Service and will result in your bounty being denied.

Problem with role permissions

edited September 2010 in Vanilla 2.0 - 2.8
Why can my members still access the admin dashboard? The only options checked under the member role are add comments, add discussions and view discussions. Am using the default Vanillaversion 1.0 theme.

Naturally this is a big concern!

Comments

  • DanDevineDanDevine
    edited September 2010
    Hmm, just signed in to a test account on my forum that I had set up back with Vanilla 1 and I am certainly able to do things in the dashboard that is not approved under the role for that account! I am currently using 2.0.6.
  • Is anybody else experiencing this? I don't know how to resolve this as it's beyond my knowledge at this time.
  • DanDevineDanDevine
    edited September 2010
    Is anybody else experiencing this? I don't know how to resolve this as it's beyond my knowledge at this time.
    Well, I guess it is you and me kiddo! Looks like I have to look at it on a positive note. i now have 32 administrators for my forum, great!

    I created a new role, gave it limited permissions, signed in under that user ID and I still have admin permissions. Unless this is not the way to test I think I am going to have to go back to Vanilla 1.
  • Ok southoxen,

    Just an update. I was using a "testuser: account that I created back in Vanilla 1 to test my roles and permissions for users. No matter what role or permission I set for that TestUser it never seemed to make a difference, the dashboard was always visible on that account. I contacted a couple of users yesterday and they confirmed that they DO NOT have the dashboard when they sign in. I am waiting for a few more with other roles to get back to me and confirm this. How are you confirming that all your users have access to the dashboard panel? In my case it was just the test user that seemed to ignore all role and permission changes. I have since deleted that TestUser account added a new "NewTestUser" under 2.0.6 and all is working correctly. This NewTestUser seems to be behaving correctly when roles and permissions are changed. Hope any of this in some way helped. I am fairly new to all this also.
Sign In or Register to comment.