Bug #6668
Do not allow editing username
0%
Description
With the new registration system the username is an opaque identifier, it shouldn't be editable, not even in /manage/
Historique
Mis à jour par Benjamin Dauvergne il y a environ 9 ans
- Priorité changé de Normal à Bas
All users do not come from public registration, it's currently not easy to differentiate user sources. Apart from /manage and /admin where do you see it editable ?
Mis à jour par Frédéric Péters il y a environ 9 ans
That was mostly a comment about the /manage/ page. In our current configuration it's especially treacherous to let the admin change usernames as they're used as federation key.
Mis à jour par Benjamin Dauvergne il y a environ 9 ans
The problem is storing the uuid in the username, that's not its place; any field should have only one semantic whatever the user. Work on access control contains a new user class with an uuid field, in the meantime we should live with this problem.
To ease manipulation of registrered user I advise using the A2_REGISTRATION_GROUP
setting with a default value of "Online registration". It automatically adds registered to a group named "Online registration". If we need to migrate those user to a new uuid storage in the future it will help.
Mis à jour par Benjamin Dauvergne il y a presque 9 ans
I set target release to future as for now it's not fixable.
Mis à jour par Benjamin Dauvergne il y a plus de 8 ans
- Statut changé de Nouveau à Solution déployée
- Assigné à mis à Benjamin Dauvergne
- Version cible changé de future à 2.2.0
It's fixed by the custom user model, uuid is now stored in a different field.
Mis à jour par Benjamin Dauvergne il y a plus de 6 ans
- Statut changé de Solution déployée à Fermé