Hi,
At admin/user/permissions I have a role set to not be able to administer permissions; however, this role can still access admin/user/permissions either by directly typing the URL or by navigating to the page via admin-menu, or even through admin/help. In each case the role can still access, change and save any permissions for any role. Note: this is not the user1 role.

Shouldn't un-checking the "administer permissions" in the user module section of admin/user/permissions, for a particular role, prevent that role from being able to access the page altogether?

Comments

yt2s’s picture

Fixed