hi,<br>I am a novice in erp5 and I'm trying to study it from the wiki and other docs around the web.<br><br>According to Base_setDefaultSecurity[1], it says that associate has only the common functions but not the power to modify.
<br><br><br>common_permission_list = [p for p in [<br> 'Access Transient Objects',<br> 'Access contents information',<br> 'Access session data',<br> 'List folder contents',<br> 'View',
<br> 'View History',<br>] if p in permission_list]<br><br># Define ERP5 permissions for each role<br>erp5_role_dict = {<br> 'Assignee': common_permission_list,<br> 'Assignor': common_permission_list + author_permission_list +\
<br> assignor_permission_list,<br> 'Associate': common_permission_list,<br> 'Auditor' : common_permission_list,<br> 'Author': common_permission_list + author_permission_list,<br> 'Manager': permission_list
<br>}<br><br><br>But according to wiki, in the given example in How to design Security[2],it gives Associate the power to modify.<br><br>draft - Associate (VM), Auditor (V)<br><br>I think Associate should be replaced with Assignee in above case or wiki document[2] should redefine the common_permission_list.
<br><br>Please let me know about your opinion.<br>[1] <a href="http://svn.erp5.org/*checkout*/erp5/trunk/products/ERP5/bootstrap/erp5_core/SkinTemplateItem/portal_skins/erp5_core/Base_setDefaultSecurity.xml?revision=11320&content-type=text%2Fplain">
http://svn.erp5.org/*checkout*/erp5/trunk/products/ERP5/bootstrap/erp5_core/SkinTemplateItem/portal_skins/erp5_core/Base_setDefaultSecurity.xml?revision=11320&content-type=text%2Fplain</a><br>[2] <a href="http://wiki.erp5.org/HowToDesignSecurity">
http://wiki.erp5.org/HowToDesignSecurity</a><br><br>