From 2bb764ff42db503b605c98fa8788ae50be5e3839 Mon Sep 17 00:00:00 2001 From: Jeremy Stretch Date: Sun, 30 Jul 2023 12:33:46 -0400 Subject: [PATCH] Establish default permissions for user token management --- docs/configuration/security.md | 4 +++- 1 file changed, 3 insertions(+), 1 deletion(-) diff --git a/docs/configuration/security.md b/docs/configuration/security.md index 5ce7fbad2..a6dc4c5ce 100644 --- a/docs/configuration/security.md +++ b/docs/configuration/security.md @@ -105,7 +105,9 @@ Default: } ``` -This parameter defines object permissions that are applied automatically to _any_ authenticated user, regardless of what permissions have been defined in the database. By default, this parameter is defined to allow all users to manage their own API tokens, however it can be overriden for any purpose. For example, to allow all users to create a device role beginning with the word "temp," you could configure the following: +This parameter defines object permissions that are applied automatically to _any_ authenticated user, regardless of what permissions have been defined in the database. By default, this parameter is defined to allow all users to manage their own API tokens, however it can be overriden for any purpose. + +For example, to allow all users to create a device role beginning with the word "temp," you could configure the following: ```python DEFAULT_PERMISSIONS = {