Authorization

The effective rights for a user are determined by their group memberships. In order to authorize an user for something, the corresponding group membership has to be added to the user instance.

User stories

  • Authors: Must be able to edit and publish her/his ProfilePage, to add and edit her/his ArticlePage(s).

  • Moderators: Must be able to edit all content and to publish all content.

  • Chiefs: Must be able to add, edit and delete users.

Groups

  • Chiefs

  • Moderators

  • Editors