[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

[cobalt-security] Turning off "/personal" panels from access



Hi,

I'm trying hard to tighten security on my RaQ3's and a
two RaQ4's. In addition to the firewalls just
installed and other preventative measures recently
taken, I'd also like to kill the user's ability to
"add users" and update/modify a user's password via
the control panels (without just turning off the
panels all-together -which might be an option if
necessary). We'd like to start assigning user's their
ID's and passwords and remove all ability for end
users to edit or change them at will.

I think the way to approach this would be to edit the
user templates that are generated in the siteadmin
panels and to remove access from the "add new user"
button as well with the "edit" button which allows
users in the siteadmin panels to add/edit users and
their passwords. This part I'm not to concerned with
as I've edited these templates in the past and fill
confident this can be accomplished.

My question is regarding the /personal (user) panels
that users also have access to as I'm sure some users
would just turn there to change their passwords if the
option is removed from the siteadmin panels.

How can I disable/remove access to the /personal
access panels on *all* domain's housed on the
RaQ3/4's. And will doing so break anything that anyone
knows of..<?>

Thanks in advance!

Scott

__________________________________________________
Do You Yahoo!?
Make international calls for as low as $.04/minute with Yahoo! Messenger
http://phonecard.yahoo.com/