incubator-couchdb-user mailing list archives

Site index · List index
Message view « Date » · « Thread »
Top « Date » · « Thread »
From Gert Cuykens <gert.cuyk...@gmail.com>
Subject Re: Noob security question
Date Sat, 03 Sep 2011 17:15:59 GMT
On Thu, Sep 1, 2011 at 3:02 PM, Benoit Chesneau <bchesneau@gmail.com> wrote:
> I'm also confused. What it happen anyway is:
>
> - The admin created via futon, create an admin user in the ini file.
> - This user have admin rights and can see/manage all the dbs
> - The  confusing part: a user document is also created but have empty roles.
>
> Imo rather we create all the users in the user db with appropriate
> roles, or "super" admins shouldn't appear in it. That's worth a
> discussion.
>

I put my super admin picture in the created document and other stuff
like contact etc. I would prefer the other way around doh that there
would not be a admin in the ini file at all, only some kind off admin
party value in case of password loss.

Mime
View raw message