...
- collections set read_groups and read_users based on VIEW access
- admin_sets allow everyone to view all admin sets. This is incompatible with collection type approach and will need to be revisited before admin_sets can become just another collection type.
For Admin Sets:
permission_template_access | admin set solr doc | ability: can? create_in_adminset | work solr doc | comments | |||||
---|---|---|---|---|---|---|---|---|---|
:manage | N/A | true | edit_access | admin is always a manager | |||||
:deposit | N/Alimits who can create in this admin set | true | |||||||
:view | N/A | read_access | hardcode | edit_access='admin' | hardcodefalse | read_access | ='public'sets visibility to 'open', but admin_sets are NOT included in search results
For Collections:
permission_template_access | collection solr doc | ability: can? create_in_collection | work solr doc | comments | |||
---|---|---|---|---|---|---|---|
:manage | edit_access | true | edit_access | admin is always a manager | |||
:deposit | N/A | limits who can create in this collection | read_access | true | access to works are granted only for works the user creates | ||
:view | read_access | false | read_access |
Visibility, which also impacts the collection solr doc's read_access field, is set in collection edit form → Discovery tab.
...