Deleted admin account- not able to give access using other accounts

Comments

1 comment

  • Avatar
    Aronium Support

    Hi Bright,

    Please read the following carefully, hopefully it will help you understand access levels and solve your problem (the last section below).

    To answer your question, there are no specific access levels, you can have any number you want, these 1-9 are given as an example (and should be sufficient for most users). It is described at https://help.aronium.com/hc/en-us/articles/115001375609-Setting-up-access-level.

    Defining access levels you need

    There are no specific actions assigned to any specific access level by default, it is up to you to decide how many levels you need and how you want to number them.
    Aronium will only look if current access level satisfies the condition to use some action, meaning that if some action is restricted with some access level, any user with that access level or higher can execute that action.

    For example, if you assign required access level for accessing settings to be "5", any user who has access level 5 and above will be able to access settings.

    Understanding admin account rules

    Any user with the highest access level in the system is considered an "admin", meaning that he will be able to execute any action, no matter what access level is set for some operation.

    For example, let's say you have two users in the system:

    1. Admin with access level 9
    2. Another user with access level 5

    If you have assigned required access level for accessing settings to be "9", as long there is that user with access level 9, the one with access level 5 will not be able to access settings.

    However, if you delete the that admin account by accident, next user in hierarchy will effectively become and admin (as the user with access level 5 is now the highest access level in the system), and, regardless of required access level, he will be able to open settings (even with level 5, as he is the "admin" now).

    This precaution is made exactly for this purpose, as users may "forget" to reset the access level, so there is always the "admin" user - the user with the highest access level (no matter if it is 1, 9, 100 or any other number used).

    Solving your problem

    For the problem you are facing, there may be two scenarios.

    1. Level "5" is the highest access level

    If the user with access level 5 is the highest access level in the system, after you have deleted the one with access level 9, he will have unrestricted access in application, and will be able to change his own access level to any.

    Assuming you are the user with access level "5" at this moment, the easiest way to test this is to edit your own profile and try to change your access level from 5 to 9. If you are an admin, it will be allowed.

    2. There is another user with access level higher then "5"

    If you (user with access level "5") are not effectively an admin, for example, if you cannot change your own access level to 9, it only means that there is another user in the system with higher access level then 5, but you do not see it in users list, as you cannot see / edit other users with highest access level.

    Hope this helps. Please let us know if something is still unclear.

    Thanks, Aronium team.

    0
    Comment actions Permalink

Please sign in to leave a comment.