Subject:*
<
Name/Email:*
<
Message Icon:*
<
Select*
<
Message:*
<



Click the Preview to see the content in action.
Options:*
<
Confirmation Code*
<
5 + 6 = ?  
Input the result from the expression
Maximum attempts you can try: 10
*
<
     

Re: Profiles Module Activation Vulnerability
by mboyden on 2009/11/3 21:57:57

I'm working on some notes to the Profile module and when I'm done with my current project I'll write them up. Overall, except for access to preferences, the Profile module does allow permission based access. Essentially, manager type users can be setup to have access to the Profile module and they don't need access to the system module. Except if you want them to have access to editing a user's groups, then you have to give them group access. I do agree that giving Profile admins access to group preferences (i.e., duplicating access to them) could be good. And there is a search function in the Profile module that allows you to find inactive (or active or both) users and then you may activate/deactivate them from the user side of the module as well as edit account settings, etc. You may also change the settings as to who may see what profile items, and more, allowing me to use or not use legacy fields and/or any new ones I wish to create.

I don't know of anything I can't do in the Profile module that can be done in the system profile area except change some preferences.

What specific functions do you believe are missing?
Re: Profiles Module Activation Vulnerability
by nmshah on 2009/11/3 19:24:08

What i mean is that there are some options available in the profile module as well as system module like edit user. This only creates some problems like the only way to search for inactive users is to use the system module.
If all functionality and options regarding the registrations were transferred to profile module and the system module need not have any of these options.
Since profile module is a part of the XOOPS download package, all those that wish to have the registration of other members can simply install the module at the time of installation or latter when they find such need.
But I realise that the problem would be with the legacy aspect.
Re: Profiles Module Activation Vulnerability
by mboyden on 2009/11/3 14:43:17

nmshah wrote:Quote:
Do we really need a profile module and the registration capabilities in the system as well. It is a sort of duplication.
I ask this because the profile module is anyways a part of the XOOPS download package. So anyone who wants to have the registration feature can install the module. Its easier and a lot of problems because of the same options available in two places will be sorted.

I'm not sure I understand the question. In short, realistically, all the XOOPS system needs now is the most basic registration of all, that of username, email address, and password. Any other fields should be handled by a profile module and then the ability to load the profile data and have it easily accessibly by fieldname replacement (like the {FIELDNAME} style attributes in the mail_templates) so any site can have the custom fields they need to use throughout the site.

Sounds easy, eh? However, we do have to deal with the legacy aspects of XOOPS, so we have all these original community-oriented fields in the database, too.

I think the reason the PM and Profile modules are still included in the core distribution is because that functionality was originally included in the Core but not as a module. As we work to migrate that part out of the core and modularize those aspects, these modules will eventually no longer be distributed as part of the core and will become part of the module package distributions.

And ThAdmin and Protector are going the other direction, it seems. They have been previously developed and distributed as modules, but realistically need to become more integrated with the core. Every site should have Protector installed and operational (well, maybe internal sites could do without), and ThAdmin is a much better administrative interface than the original (don't leave home without it). I also highly recommend GIJoe's AltSys module for managing blocks, permissions, and templates and find need for the XOOPSInfo, XOOPS Care, and Backup/Restore modules for every installed site, but maybe others don't feel a need for those.

Isn't XOOPS wonderful? You only have to install what you need which, along with it's robust caching system, helps keep it leaner and meaner than Drupal and Joomla. I have a small but growing web hosting service as well as the development I do, and the Drupal and Joomla installations are horrid resource hogs (usually requiring an account upgrade). XOOPS isn't and this community can remain proud of that aspect.
Re: Profiles Module Activation Vulnerability
by nmshah on 2009/11/3 7:38:18

Do we really need a profile module and the registration capabilities in the system as well. It is a sort of duplication.
I ask this because the profile module is anyways a part of the XOOPS download package. So anyone who wants to have the registration feature can install the module. Its easier and a lot of problems because of the same options available in two places will be sorted.
Re: Profiles Module Activation Vulnerability
by maxxy on 2009/11/2 23:10:52

all the features above will be nice...

plus there was a discussion about profile module last time....hope some of it can be implemented..


https://xoops.org/modules/newbb/viewtopic.php?post_id=281437#forumpost281437


Who's Online

224 user(s) are online (166 user(s) are browsing Support Forums)


Members: 0


Guests: 224


more...

Donat-O-Meter

Stats
Goal: $15.00
Due Date: Jul 31
Gross Amount: $0.00
Net Balance: $0.00
Left to go: $15.00
Make donations with PayPal!

Latest GitHub Commits