Commit Graph
11 Commits
Author SHA1 Message Date
Yannick Tivisse 080158c1fe [FIX] fleet: Fleet user rigths implies employees user rights
Create users having only manager or user rights on fleet, cannot acces \web pages, We should add the employee rights, as when we give fleet rights
2016-09-20 12:55:15 +02:00
Yannick Tivisse ff63f5d0a3 [IMP] base_setup: Allow the admin to modify the default user acess rights
Add a link in the general settings to access easily the default_user form view in order to modify the default access rights

The default_user manager rights declarations in all the applications have been move in a noupdate="1" definition to avoid the manual configuration overwrittings
2016-08-23 11:14:37 +02:00
Ravi Gadhia e513af0bb0 [IMP] fleet: migrate to new api (fleet.py). my eye is paining 2016-05-27 10:39:22 +02:00
Yannick Tivisse 1ecba213f4 [IMP] Newly created users get all manager access right
Coming from a bug in web_settings_dashboard. Invited user didn't have any rights
when created from the dashboard, which was leading to an error.

This bug leaded to a new discussion. Better to have basic employee having user
rights for all main applications. For bigger entreprises there is an admin that
will carefully remove extra rights, if necessary. The target is small businesses,
it makes sense that every way to create a user gives the same result.

In conclusion, each new user has a full access to the applications by default

How is it implemented ?
We added an inactive default user which original access right to the groups
'base.group_user' and 'base.group_partner_manager' in base. Each
application will extend the default user's access right by adding the maximal
access right for this application.

On user creation, we will use by default the 'group_id' field from the default
user. We will in the same time remove the ugly 'default_groups_ref' key which
was passed sometimes in the context for some fields in some views, and sometimes
nothing.

So, the user can modify the access rights for the default user, but he should be
aware that removing project user access rights for a default user will prevent
a *created on the fly in a task* user will not be able to access the task.
2015-11-20 16:27:32 +01:00
Olivier Dony 3fe6987ce7 [MERGE] Harmonization of noupdate flag on security XML data, courtesy of Alexis de Lattre (Akretion)
ir.rule records are in noupdate data blocks to let the admin
alter them without fear of them being reset at next update.
Other records such as groups are in normal mode, so they
can be updated whenever necessary

bzr revid: odo@openerp.com-20121218232001-t425t4hi7qbmsip2
2012-12-19 00:20:01 +01:00
Cedric Snauwaert d7461fb1c8 [FIX]fleet: setting group for user_demo should be done in demo data instead of data
bzr revid: csn@openerp.com-20121217132045-lt0b2aeubty1hrkn
2012-12-17 14:20:45 +01:00
Cedric Snauwaert 9bfd41c39e [ADD]after install go to fleet menu, change driver of demo data to demo_user and put demo_user in fleet_user group
bzr revid: csn@openerp.com-20121210162834-bej2x1m8vms87qre
2012-12-10 17:28:34 +01:00
Cedric Snauwaert 789ede3ea8 [ADD]search field and some changes to fuel and service log: purchaser should be driver by default
bzr revid: csn@openerp.com-20121210140317-kg03hsk46rpzgcyx
2012-12-10 15:03:17 +01:00
Cedric Snauwaert d37bd882a8 [FIX]finish renaming some field
bzr revid: csn@openerp.com-20121206142941-pmq2s4h2or1ey0nl
2012-12-06 15:29:41 +01:00
Cedric Snauwaert b2457a3fc1 [REF]change some field name, remove useless line in access rules
bzr revid: csn@openerp.com-20121206105033-6dcffqm1626jt5r8
2012-12-06 11:50:33 +01:00
Cedric Snauwaert a56f37e6f4 [ADD]access rules and groups
bzr revid: csn@openerp.com-20121204162056-cacua9dw1shg5fnv
2012-12-04 17:20:56 +01:00