<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Consumer permissions to all users through globalPermission in Alfresco Archive</title>
    <link>https://connect.hyland.com/t5/alfresco-archive/consumer-permissions-to-all-users-through-globalpermission/m-p/299710#M252840</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;SPAN&gt;Hi,&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;basically, because of other issues, I need to have permission inheritance turned off, and still have a group that has read permission to the whole repository.&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;Now, similarly to how we have globalPermission to allow administrators full access defined in permissionModel.xml, I was hoping I could to the same for some other group, with consumer/read permission. But that does not work.&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;Am I completely missunderstanding what this is supposed to do? Do you have any other advices as to how to achieve what I'm trying to?&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;Thanks!&lt;/SPAN&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Tue, 22 Oct 2013 14:47:57 GMT</pubDate>
    <dc:creator>lista</dc:creator>
    <dc:date>2013-10-22T14:47:57Z</dc:date>
    <item>
      <title>Consumer permissions to all users through globalPermission</title>
      <link>https://connect.hyland.com/t5/alfresco-archive/consumer-permissions-to-all-users-through-globalpermission/m-p/299710#M252840</link>
      <description>Hi,basically, because of other issues, I need to have permission inheritance turned off, and still have a group that has read permission to the whole repository.Now, similarly to how we have globalPermission to allow administrators full access defined in permissionModel.xml, I was hoping I could to</description>
      <pubDate>Tue, 22 Oct 2013 14:47:57 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/alfresco-archive/consumer-permissions-to-all-users-through-globalpermission/m-p/299710#M252840</guid>
      <dc:creator>lista</dc:creator>
      <dc:date>2013-10-22T14:47:57Z</dc:date>
    </item>
    <item>
      <title>Re: Consumer permissions to all users through globalPermission</title>
      <link>https://connect.hyland.com/t5/alfresco-archive/consumer-permissions-to-all-users-through-globalpermission/m-p/299711#M252841</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;SPAN&gt;I think some clarity is needed in your setup. You can go into the repository and for each site you can turn off inheritance perm. Then just manually add your groups with the consumer level access. That's basically read only. &lt;/SPAN&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 22 Oct 2013 16:30:45 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/alfresco-archive/consumer-permissions-to-all-users-through-globalpermission/m-p/299711#M252841</guid>
      <dc:creator>eswbitto</dc:creator>
      <dc:date>2013-10-22T16:30:45Z</dc:date>
    </item>
    <item>
      <title>Re: Consumer permissions to all users through globalPermission</title>
      <link>https://connect.hyland.com/t5/alfresco-archive/consumer-permissions-to-all-users-through-globalpermission/m-p/299712#M252842</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;SPAN&gt;I'm not sure I follow you; sure I can apply permissions to each node, but that's what I'm trying to avoid.&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;I still think the globalPermissions approach should work.&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;"Global Permission - a permission or permission group assigned to an authority regardless of the node. A global permission takes precedence over node specific ACLS. If "bob" were granted the global permission "read" then "bob" would have the "read" permission for everything, regardless of any ACLs set on any nodes."&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;A href="http://wiki.alfresco.com/wiki/Security_and_Authentication" rel="nofollow noopener noreferrer"&gt;http://wiki.alfresco.com/wiki/Security_and_Authentication&lt;/A&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 22 Oct 2013 17:42:00 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/alfresco-archive/consumer-permissions-to-all-users-through-globalpermission/m-p/299712#M252842</guid>
      <dc:creator>lista</dc:creator>
      <dc:date>2013-10-22T17:42:00Z</dc:date>
    </item>
    <item>
      <title>Re: Consumer permissions to all users through globalPermission</title>
      <link>https://connect.hyland.com/t5/alfresco-archive/consumer-permissions-to-all-users-through-globalpermission/m-p/299713#M252843</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;SPAN&gt;Long time no see.&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;Basically, if you have this piece of configuration ("FullControlTest" is an exact copy of "FullControl") everything works as expected, administrators still have full access.&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;PRE class="language-none line-numbers"&gt;&lt;CODE&gt;&lt;BR /&gt;&amp;lt;!–&amp;lt;globalPermission permission="FullControl" authority="ROLE_ADMINISTRATOR"/&amp;gt;–&amp;gt;&lt;BR /&gt;&amp;lt;globalPermission permission="FullControlTest" authority="ROLE_ADMINISTRATORS"/&amp;gt;&lt;BR /&gt;&lt;SPAN class="line-numbers-rows"&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/CODE&gt;&lt;/PRE&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;If you alter that to read this:&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;PRE class="language-none line-numbers"&gt;&lt;CODE&gt;&lt;BR /&gt;&amp;lt;!–&amp;lt;globalPermission permission="FullControl" authority="ROLE_ADMINISTRATOR"/&amp;gt;–&amp;gt;&lt;BR /&gt;&amp;lt;globalPermission permission="FullControlTest" authority="GROUP_MYGROUP"/&amp;gt;&lt;BR /&gt;&lt;SPAN class="line-numbers-rows"&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/CODE&gt;&lt;/PRE&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;Members of the "MYGROUP" do not have full control. &lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;Any ideas why?&lt;/SPAN&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 12 Sep 2014 11:54:40 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/alfresco-archive/consumer-permissions-to-all-users-through-globalpermission/m-p/299713#M252843</guid>
      <dc:creator>lista</dc:creator>
      <dc:date>2014-09-12T11:54:40Z</dc:date>
    </item>
  </channel>
</rss>

