ERP5Security: make login_list empty for SUPER_USER who has no login.
Showing
-
Owner
@vpelletier can you confirm if the following result with this change is fine ? See also 92bf4a58.
ipdb> pp self.portal.acl_users.searchUsers(id=SUPER_USER) ({'id': '__erp5security-=__', 'login': None, 'login_list': [], 'path': None, 'pluginid': 'erp5_login_users', 'principal_type': 'user', 'title': None, 'userid': '__erp5security-=__'}, {'id': '__erp5security-=__', 'login': '__erp5security-=__', 'login_list': [], 'path': None, 'pluginid': 'erp5_users', 'principal_type': 'user', 'title': '__erp5security-=__', 'userid': '__erp5security-=__'})
-
Owner
Looks good to me, yes.
Of course, ideally erp5_users should be disabled, but that's another question.
Please register or sign in to comment