Paul,

On Mon, Apr 30, 2012 at 11:17 AM, Paul Poulain <paul.poul...@biblibre.com>wrote:

> Question to all = could it be a good idea to let superlibrarians execute
> dangerous SQLs like the one forbidden by the test ?
> Otherwise asked: could we add a
> unless permission eq 'superlibrarian'
> condition ?
>
> ( ie: "with great power comes great responsibility" -@spiderman uncle- )
>

We were actually just discussing that on #koha a few days ago. I argued
that only the database user (i.e. user 0) should be allowed to do it. If
you have the direct login, there's nothing you can't do with the system
just by logging into the database.

Regards,
Jared

-- 
Jared Camins-Esakov
Bibliographer, C & P Bibliography Services, LLC
(phone) +1 (917) 727-3445
(e-mail) jcam...@cpbibliography.com
(web) http://www.cpbibliography.com/
_______________________________________________
Koha-devel mailing list
Koha-devel@lists.koha-community.org
http://lists.koha-community.org/cgi-bin/mailman/listinfo/koha-devel
website : http://www.koha-community.org/
git : http://git.koha-community.org/
bugs : http://bugs.koha-community.org/

Reply via email to