Hi,
We came across an interesting security setup requirement that is not achievable through WEM standard security mechanism. Please let me know if I am mistaken on this.
The requirement is to setup a WCM user with different capabilities for content in different folders. For example, the user can have author role and editor role but when (s)he accesses content in folder-a, (s)he should have capabilities of author but in folder-b, (s)he should be editor role.
As far as my understanding is concerned, this request may be a business use case but it goes against the basic security design in Open Text WEM i.e. roles provide capabilities to "perform" actions in the system while user groups provide permissions to perform those actions in specific locations / folders. If a user has a capability through a role, we can not restrict that capability on one folder and not on other.
Have you come across this requirement before and how did you address it?
Thanks.
Sohail