Expand my Community achievements bar.

Get ready! An upgraded Experience League Community experience is coming in January.

Revoke Experience Manager shell ui

Avatar

Level 1

Hi All,

 

I currently have a business request to revoke access to exp manager ui where an user that currently has only authors and workflow-users permissions allowed, because though this UI this same user is allowed to see and access some links that they should not, such as "Penetration Tests, Universal Editor, tools, permissions and others:

 

A user can currently access this page just by hitting "Experience Manager", on AEM navigation (witch i'm also not able to hide and revoke access to).

 

GiovannaFe_0-1764863850618.png

 

 

I've tried to use several ACLs to control it, but could not achieve my goal.

Any toughts on how can i customize it?

 

 

Topics

Topics help categorize Community content and increase your ability to discover relevant content.

1 Reply

Avatar

Community Advisor

Hi @GiovannaFe ,

You can fine tune access on specific nodes like /libs/content) for groups, preventing users from seeing or interacting with sensitive areas through denying privileges like jcr:readmodify, or using Closed User Groups (CUGs) for content. 

In the non-cloud AEM experience you can hide these types of things easily through ACLs by creating a deny for the paths  /libs/wcm/core/content/sites and /libs/cq/core/content/nav/sites to hide Sites, for example.

 

You can follow below link for more details on it.

 

Hope it helps!

 

 

-Tarun