Bug #1741
closedDefault page when not authorised
0%
Description
We have found that when a user tries to go to a page which is not in their effective privileges list they are redirected to the first page that they are able to access. This is fine if the 'System: Login/Logout' page and Dashboard is the first privilege. However, we had added 'AJAX: Get Stats' first and upon trying to access a restricted page the user was redirected to /getstats.php which just contains raw data regarding the CPU usage, memory, time, etc that is designed to be accessed via an AJAX request. Moving 'System: Login/Logout' page and Dashboard to the top of the privileges table fixed this. Can you force the redirect page to be the Dashboard or a pre-defined page?
Updated by Jim Pingle over 13 years ago
- Status changed from New to Feedback
If the user has either the Login/Logout, or the new Dashboard privilege, those now get sorted first in the list when saving. The next new snapshot should include the fixes.
Jim
Updated by Jim Pingle over 12 years ago
- Status changed from Feedback to Resolved