- Posts: 92
- Thank you received: 2
Admin Approval Before Access
- charles
- Topic Author
- Offline
- Premium Member
-
Less
More
9 years 3 months ago #79587
by charles
Replied by charles on topic Admin Approval Before Access
My first post was based on the Admin Approval process. When taking the component apart I didn't see this option!
The hidden Option that was mention earlier in a reply post is not an option because of the security hole it creates! So in order to get the result I wanted I had to add a few things and combine a plugin with another plugin for now... So when a person applies for a membership plan on one of my Joomla site, the plugin check Joomla Core settings, payment is directed through the gateway the consumer selects and after payment is made, the person is redirected back to my site and placed in a holding stage for 24 hours to 48 hours.
My software then Check & Verify all information that the customer gives and any red flag (Billing Address, Banking or Charge Card Info) will result in Approval or Deny... The instant access does not work for the type of system I have built... And as a designer the last thing I want to do is place a backdoor option on an open forum and place other people websites at risk! And I am talking about the Hidden Menu Option... With just a few characters in the url I can find almost every CMS that using this option...
So if you are going to use a hidden menu or do something that place Joomla Core as risk please make a backup copy of your website... Because its just a matter of time before your website is hacked!
Post is closed....
The hidden Option that was mention earlier in a reply post is not an option because of the security hole it creates! So in order to get the result I wanted I had to add a few things and combine a plugin with another plugin for now... So when a person applies for a membership plan on one of my Joomla site, the plugin check Joomla Core settings, payment is directed through the gateway the consumer selects and after payment is made, the person is redirected back to my site and placed in a holding stage for 24 hours to 48 hours.
My software then Check & Verify all information that the customer gives and any red flag (Billing Address, Banking or Charge Card Info) will result in Approval or Deny... The instant access does not work for the type of system I have built... And as a designer the last thing I want to do is place a backdoor option on an open forum and place other people websites at risk! And I am talking about the Hidden Menu Option... With just a few characters in the url I can find almost every CMS that using this option...
So if you are going to use a hidden menu or do something that place Joomla Core as risk please make a backup copy of your website... Because its just a matter of time before your website is hacked!
Post is closed....
Please Log in or Create an account to join the conversation.
- Tuan Pham Ngoc
- Offline
- Administrator
-
9 years 3 months ago #79594
by Tuan Pham Ngoc
Replied by Tuan Pham Ngoc on topic Admin Approval Before Access
@charles
If you use Membership Pro and need this option, please consider using my suggestion (as a workaround) for now - require admin approve Joomla user account before the account is activated.
I will add an option into Membership Pro to allow admin approve membership before subscription become active. From my current workload, I think I can only have it implemented in about 4 to 6 weeks
Regards,
Tuan
If you use Membership Pro and need this option, please consider using my suggestion (as a workaround) for now - require admin approve Joomla user account before the account is activated.
I will add an option into Membership Pro to allow admin approve membership before subscription become active. From my current workload, I think I can only have it implemented in about 4 to 6 weeks
Regards,
Tuan
The following user(s) said Thank You: Jonathan Colls
Please Log in or Create an account to join the conversation.
- Jonathan Colls
- Offline
- Senior Member
-
Less
More
- Posts: 57
- Thank you received: 5
9 years 3 months ago #79624
by Jonathan Colls
Replied by Jonathan Colls on topic Admin Approval Before Access
@Charles,
Would you be able to briefly explain the dangers of hidden menus in Joomla.
My understanding/use of them is to allow articles/components to be accessed via a friendly URL which does not already exist in the site normal navigation. ACL options are still applicable with them so I would assume they are as safe as non hidden menu items. I don't see a difference.
However, I was not suggesting a hidden menu item as an option for you. Just a different subscription plan that is not able to be chosen from the front end. I'm glad though that Tuan has added this development to the list.
@Tuan,
When you do this development, would you be able to this at plan level rather than system level. It would be useful to have for example the free accounts have immediate access but high value subscriptions a bit of added protection of admin approval.
Would you be able to briefly explain the dangers of hidden menus in Joomla.
My understanding/use of them is to allow articles/components to be accessed via a friendly URL which does not already exist in the site normal navigation. ACL options are still applicable with them so I would assume they are as safe as non hidden menu items. I don't see a difference.
However, I was not suggesting a hidden menu item as an option for you. Just a different subscription plan that is not able to be chosen from the front end. I'm glad though that Tuan has added this development to the list.
@Tuan,
When you do this development, would you be able to this at plan level rather than system level. It would be useful to have for example the free accounts have immediate access but high value subscriptions a bit of added protection of admin approval.
Please Log in or Create an account to join the conversation.
- Tuan Pham Ngoc
- Offline
- Administrator
-
9 years 3 months ago #79628
by Tuan Pham Ngoc
Replied by Tuan Pham Ngoc on topic Admin Approval Before Access
@Jonathan: Yes, it would be a plan setting
Regards
Tuan
Regards
Tuan
The following user(s) said Thank You: Stephen, Jonathan Colls
Please Log in or Create an account to join the conversation.
Support
Documentation
Information
Copyright © 2025 Joomla Extensions by Joomdonation. All Rights Reserved.
joomdonation.com is not affiliated with or endorsed by the Joomla! Project or Open Source Matters.
The Joomla! name and logo is used under a limited license granted by Open Source Matters the trademark holder in the United States and other countries.
The Joomla! name and logo is used under a limited license granted by Open Source Matters the trademark holder in the United States and other countries.