Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Restricted acces to instance home page #8

Open
josanFFiG opened this issue Dec 18, 2017 · 6 comments
Open

Restricted acces to instance home page #8

josanFFiG opened this issue Dec 18, 2017 · 6 comments

Comments

@josanFFiG
Copy link

This is a Feature Proposal

🎩 Description

Organizations are private entities, so they should have the option to restrict acces only to members.
Home URL must redirect to login.

📌 Related issues

📋 Additional Data

  • Decidim deployment where you found the issue:
  • Browser & version:
  • Screenshot:
  • Error messages:
  • URL to reproduce the error:
@josanFFiG
Copy link
Author

josanFFiG commented Dec 18, 2017

This issue, nowadays, is a concret demand for: decidim.fceg.cat

@zuzust
Copy link
Contributor

zuzust commented Dec 21, 2017

It is a feature that will be demanded by a bunch of organizations. Although it can be handled on a per-organitzation basis by means of basic authentication mecanisms and the like, it is worth thinking it as an opt-in setting accessible from the org dashboard. Let's think together how to make it possible @josepjaume

@zuzust
Copy link
Contributor

zuzust commented Jan 10, 2018

A first approach has been commited in ae137d1. @josanFFiG, whenever we need it on place for a new organization, we just have to tell @josepjaume which is the target www.domini.com@user:password.

I do not close the issue because further discussion regarding how to make it become an opt-in is needed.

@zuzust
Copy link
Contributor

zuzust commented Jan 17, 2018

It's clear to me that:

  1. this feature should be an opt-in and should be enabled from the organization admin's dashboard;
  2. once enabled, unauthenticated users should be redirected to the login form;
  3. once enabled, registration link should not be rendered
  4. sharing and embedding content should be disabled (this being mandatory or as an option)

@josanFFiG what do you think?

@josanFFiG
Copy link
Author

As we have been talking:
3. Could be an opt-in...
For the rest: totally agree with @zuzust !

@zuzust
Copy link
Contributor

zuzust commented Jan 18, 2018

Indeed, an organization admin should be able to disable registration from the admin dashboard. This way we'd anticipate future scenarios we know for sure we'll come across.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Projects
None yet
Development

No branches or pull requests

2 participants