Skip to content

Option to Restrict Primary Domain #1096

@jflattery

Description

@jflattery

In Pangolin, the primary domain appears to be usable by all organizations by default, which can cause access conflicts or security concerns in multi-organization setups. For instance, in environments with multiple organizations managing their own sites and resources, admins need a way to prevent automatic access to the primary domain to enforce stricter controls.

Introduce a configuration option to restrict the primary domain from default usage by organizations. Once restricted, allow admins to explicitly assign the primary domain to specific organizations (e.g., via the admin interface for managing organizations, sites, users, and roles). This could include:

  • A global setting toggle (e.g., "Restrict primary domain to assigned organizations only").
  • An assignment mechanism in the UI, where the primary domain can be linked to selected organizations, integrating with existing role-based access control (RBAC) for resources.

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions