Feature #90778
Updated by Oliver Hader about 4 years ago
h2. Brief description
* in TYPO3 backend
* before modifications to user-related records are persisted, the system shall request a password confirmation ("sudo mode")
* this procedure currently focuses on user-permissions only, but could be extended for data-privacy aspects as well
h2. Components
* modifications of TYPO3 v10 and v9 in order to support replaying a request based on a server request instruction (see patch)
* actual implementation as TYPO3 extension at https://github.com/FriendsOfTYPO3/sudo-mode (experimental currently)
h2. References
* https://help.github.com/en/github/authenticating-to-github/sudo-mode
h2. Screenshots
!sudo-1.png!
Backend admin is editing another backend user - before changes are persisted the following password confirmation dialog needs to be completed.
!sudo-2.png!