-
-
Notifications
You must be signed in to change notification settings - Fork 29
People Groups Developer Guide
Companion to People Groups.
knowledge_user_groups id, name (UNIQUE), description, is_active, created_by_id, β¦
knowledge_user_group_members id, group_id, member_type, member_id, expires_at, created_datetime
UNIQUE (group_id, member_type, member_id)
KEY (member_type, member_id)
member_type is 'analyst' or 'user'. Membership is polymorphic and deliberately not foreign-keyed β there is no single table to point at.
Both tables, and their indexes, were already declared in includes/db_verify_schema.php and the generated index list. Adding the screen required no schema change at all.
The table is the product's general grouping of people now, managed on tickets/users.php. Knowledge is simply the first thing that grants access to one.
π΄ Renaming it would be a silent data loss.
db_verifyonly ever creates tables. Under a new name it makes an empty one and leaves the populated one orphaned beside it β every membership stops granting anything, with a green tick on the verification screen.knowledgeViewerPrincipals()catches its ownPDOExceptionand reads a missing table as "no groups yet", so nothing reports the loss. It fails closed, but silently.
The rationale is repeated in a comment above the table in database/freeitsm.sql, because that is where somebody tidying up will look.
api/tickets/user_groups.php, action-dispatched (list, get, search, create, update, delete, add_member, remove_member) in the same shape as api/knowledge/permissions.php.
case 'list': case 'get': case 'search': // requireModuleAccessJson('tickets')
default: // + requireAdminJson($conn)A group grants nothing by itself. But once one is on a folder's access list, adding somebody to it is a grant β made from a Tickets-gated screen, to a folder governed by Knowledge. Without the floor, anyone holding Tickets could put themselves in "Payroll".
Same rule api/knowledge/permissions.php states for editing an access list, and the same reasoning that put analyst and team management in the System module.
π΄ A replace-all has to re-insert every row, which silently resets each member's
expires_atand the date they joined. Editing a group to add one person would quietly give six other people permanent access.
api/lms/group.php does exactly that for LMS learning groups; it gets away with it only because that membership carries no expiry to lose.
add_member uses ON DUPLICATE KEY UPDATE expires_at = VALUES(expires_at) β so re-adding somebody already present is how you extend or clear their end date, and the date they originally joined survives.
Nothing sweeps expired rows. knowledgeViewerPrincipals() and lmsAssignmentReachSql() both carry:
AND (um.expires_at IS NULL OR um.expires_at > UTC_TIMESTAMP())So the row stays and stops counting. That is what makes "who had access, and until when" answerable, and it means there is no job to fail.
expires_at is a UTC instant, because that is what the access check compares against. It is written as the end of the picked day in the installation's zone: end of the chosen day, not the start, because somebody who types the 14th means the 14th is their last day.
β οΈ The display must not run that instant through another timezone conversion. It did, and "until the 30th" rendered as "until the 1st" for anyone whose display zone sat ahead of the installation's. The endpoint now returns a separateexpires_onβ the calendar day, converted back in the zone it was picked in β and the page renders it withfmtNaiveDate(). The instant still decides access.
This is the fourth kind of stored date. See Timezones and Time Handling.
The member list and the search scope portal users with activeTenantFilter($conn, $analystId, 'u'), exactly as api/tickets/get_users.php does. Analysts are staff and are not scoped.
Validation on add_member re-applies the same filter: without it the picker's scope is decoration and you could add anybody by guessing an id.
Anything the scope removes is counted and returned as hidden_count, never silently dropped.
-
--dangeris not a token.theme.csshas--danger-text,-bg,-border,-accentand no bare--danger. Grep everyvar(--x)againsttheme.cssbefore using it. -
Page state declared as a top-level
letis not onwindow. Inlineonclickhandlers resolve it through the global scope chain, but a test harness readingw.someStategetsundefined. -
The dialogue uses the canonical three-pane modal (
modal-header/modal-body/modal-footerwith an inlinemax-width), whichinbox.cssalready styles including neutralising page-level padding.tickets/users.phppreviously held the only bespoke#xModal .modal-contentoverride in the codebase; it is gone.
- Groups of People β Developer Guide β πΊοΈ the map of every "group" in FreeITSM, and which features accept which. Read this before adding another one.
- People Groups β the user-facing guide
- Knowledge Folders and Security Developer Guide β how a group resolves to a principal
- Training for Portal Users Developer Guide
FreeITSM β an open-source IT Service Management platform Β· github.com/edmozley/freeitsm Β· MIT licence
- Installation
- β° Scheduled tasks (cron jobs)
- Architecture
- π§ͺ Developer tests
- AI Providers
- Internationalisation (i18n)
- Timezones & Time Handling
- π Date & Time Formats
- Theming & Dark Mode
- ποΈ Recent β getting back to what you were doing
- β¨οΈ Command palette (βK)
- π Searching inside tickets
- π Attached documents
-
MobileβFriendly
- β³ π« Mobile: Tickets
- β³ π» Mobile: Assets
- β³ π Mobile: Calendar
- β³ π Mobile: Knowledge
- β³ π¦ Mobile: Service Status
- β³ πΌ Mobile: Watchtower
- β³ π§© Mobile: Problem Management
- β³ π Mobile: Change Management
- β³ πΏ Mobile: Software
- β³ β Mobile: Tasks
- β³ π Mobile: Forms
- β³ π Mobile: Contracts
- β³ π Mobile: Domains
- β³ π Mobile: People
- β³ π Mobile: LMS
- β³ πΊοΈ Mobile: CMDB
- β³ πΊοΈ Mobile: Network Mapper
- β³ π§ Mobile: Process Mapper
- β³ βοΈ Mobile: Workflow
- β³ π₯οΈ Mobile: System
- β³ π Mobile: Reporting
- β³ π Mobile: System Wiki
- β³ π Mobile: Self-Service Portal
- β³ π§° Mobile: Techniques & Tricks
-
Security
- Layer 1 β which modules you can enter
- β³ π§© Module Access Control
- β³ π οΈ Module Access β Developer Guide
- Layer 2 β what you can administer
- β³ π Roles & Permissions
- β³ π οΈ Roles β Developer Guide
- β³ π€ Why capabilities are constants
- Layer 3 β the System module
- β³ π Admin Access Control
- Hardening
- β³ π Security review response 2026-08
- β³ π‘οΈ Security hardening 2026-08
- β³ π οΈ Security hardening 2026-08 β Developer Guide
- β³ π‘οΈ Round three β plain English
- β³ π οΈ Round three β Developer Guide
- β³ π‘οΈ CSRF protection (S4) β Developer Guide
- Single Sign-On (SSO)
- ποΈ LDAP & Active Directory
- π CardDAV contact sync
- Browser Extension
- API Reference
-
π REST API β how it works
- β³ π« REST API: Tickets
- β³ π» REST API: Assets
- β³ π΄ REST API: Problems
- β³ π REST API: Changes
- β³ π REST API: Knowledge
- β³ β REST API: Tasks
- β³ ποΈ REST API: CMDB
- β³ π REST API: Contracts
- β³ ποΈ REST API: Calendar
- β³ πΏ REST API: Software
- β³ π REST API: Domains
- β³ π¦ REST API: Service Status
- β³ βοΈ REST API: Morning Checks
- β³ π REST API: Forms
- β³ βοΈ REST API: Workflow
- β³ π·οΈ REST API: Cost centres
- β³ πΊοΈ REST API: Network Mapper
- β³ π§ Using the API docs page
- β³ π OpenAPI specification
- β³ β OpenAPI: kept correct
- β³ π οΈ Maintaining the catalogue
- Watchtower
-
Tickets
- β³ π Rota copy and paste β Developer Deep Dive
- β³ β Checklists & SOPs
- β³ βοΈ Mandatory fields
- β³ π·οΈ Ticket categories
- β³ π₯ Assigning tickets to a team, and escalation
- β³ π’ One board across every company
- β³ Mailbox Authentication
- β³ π€ Email send log
- β³ Basic IMAP mailboxes
- β³ Email rendering & images
- β³ SLA Management
- β³ WhatsApp channel
-
β³
βοΈ Telegram channel - β³ β CSAT company scope and filters β Developer Guide
- β³ π₯ Microsoft Teams channel
- β³ π¨οΈ Mattermost channel
- β³ π¬ Web chat channel
- β³ π£ Slack channel
- β³ π Linking tickets
- β³ β Record previews
- β³ π Ticket notes: internal or shared
- β³ ποΈ Canned responses
- β³ βοΈ Limiting replies to particular senders
- β³ π¨ Telling the analyst a ticket is theirs
- β³ βοΈ Email signatures
- β³ π The public web address
- β³ π’ Ticket numbering
- β³ π Raising a ticket for someone else
- β³ π Merging tickets
- β³ π Confidential tickets
- β³ π₯ Portal managers
- β³ π Who has seen a ticket
- β³ π Reading long tickets
- β³ β Splitting tickets
- β³ β Selecting several tickets
- β³ ποΈ The folder pane
- β³ π½ Just my tickets, or no closed ones
- β³ π οΈ Snoozing tickets β Developer Guide
- β³ π₯ Collision detection
- β³ β±οΈ Time tracking
- β³ π Scheduled work in your own calendar
- Problem Management
- Tasks
-
Assets
- β³ π’ Moving an asset between companies
- β³ π Shared asset locations
- β³ π§βπΌ Assigning assets to analysts
- β³ π Warranty and lease alerts
- β³ π Saved table views
- β³ π¨οΈ Recording anything, and importing it
- β³ π·οΈ QR asset labels
- β³ π Who holds what, and handover documents
- β³ π₯οΈ The inventory agent (PowerShell)
- β³ ποΈ Proxmox VE servers
- β³ βοΈ VMware Cloud Director servers
- β³ π Linking equipment to tickets
- β³ βοΈ Follow-up tasks on a ticket
- Knowledge
- Change Management
- Calendar
- Morning Checks
- Reporting
- Software
-
Forms
- β³ π¨ The form designer β Developer Guide
- β³ π Layout & the grid β Developer Guide
- β³ ποΈ Collections β grouping submissions
- β³ π Submissions as PDFs
- β³ β‘ What happens next β a form's own actions
- β³ π οΈ Sections & conditional logic β Developer Guide
- β³ π οΈ Lookup fields β Developer Guide
- β³ π‘οΈ Catalogue request approvals
- People
- Domains
- Contracts
- Service Status
- π Notifications
- π¨ War Room
- Self-Service Portal
- LMS
- Process Mapper
- CMDB
- Network Mapper
- Workflows
- Issue trackers (Jira, Azure DevOps)
- System
-
Overview
- β³ π Progress tracker
- β³ Concepts & vocabulary
- β³ Email routing & mailboxes
- β³ Settings: global vs per-company
- β³ Users & self-service
- β³ Staff cross-company access
- β³ π’ One board across every company
- β³ Worked examples
- β³ Pitfalls & gotchas
- β³ Scope: what it's for
- β³ π οΈ Developer Guide (make a module multi-company)
- β³ ποΈ Case study: CMDB (a linked graph)
- β³ π§ͺ Test harness (prove it's isolated)
- What this is
-
π Bugs resolved
- β³ π’ Chat tickets ignored your ticket numbering
- β³ π Dates shown as a dash, or in server time
- β³ π Assets β Users showed people from other companies
- β³ π Restricted analysts could read other modules' data
- β³ πΌοΈ Replies with a picture in the thread failed to send
- β³ π Reply attachments never reached the customer
- β³ π οΈ Outbound email attachments β Developer Guide
- β³ π A global SSO provider was missing from the portal
- β³ π Behind a proxy, the SSO redirect said http
- β³ βοΈ The portal tagline moved when you saved it
- β³ π¨ The portal settings screen forgot what you saved
- β³ π‘οΈ The approvals inbox said "Error" and nothing else
- β³ π A table's answers were missing from the PDF
- β³ β A single-select column let you tick every option
- β³ π The portal ignored a form's field widths
- β³ π The tasks board stopped taking clicks
- β³ ποΈ #121 The index list is out of date after upgrading
- β³ π #133 The calendar subscription was empty
- β³ π #131 Tasks always reopened on the board
- β³ π₯ #129 Every page returned HTTP 500 after upgrading
- β³ π³ #127 A PHP warning above the System page
- β³ π #126 Notes stamped with the server's clock
- β³ π Storing every date in UTC
- β³ πͺ The portal was down for everyone signed in
- β³ βοΈ #120 Workflow notes could never be written
- β³ βοΈ #123 Three errors when running Database Verification
- β³ π #122 The description box was a stub in the corner
- β³ π£ Demo data deleted real accounts
- β³ π #117 Sign-in redirected to the wrong address
- β³ π¨ #108 The priority dot was invisible
- β³ β±οΈ #116 Time logged from the right-click menu
- β³ π #114 API keys refused by our own guard
- β³ ποΈ #110 Assigning a task told nobody
- β³ πͺ #107 Signed out while still working
- β³ π #103 "Share with Requester" reached nobody
- β³ π #102 Search found nothing for hyphens
- β³ πͺ #101 Source code editor opened behind
- β³ βοΈ #88 Subtasks could not be ticked off
- β³ π» #84 Asset deep link selected nothing
- β³ π« #79 A new ticket arrived with no status
- β³ π§ #79 A ticket from email did not say so
- β³ π #78 Bell opened to nothing
- β³ π¬ #77 Mail only collected from Inbox
- β³ π #74 The default password could not be changed
- β³ π¦ #70 Renaming an impact level
- β³ π€ #67 App-only mailboxes could not send
- β³ π #45 Verify only ever worked for Microsoft
- β³ π #45 IMAP reported as not authenticated
- β³ βοΈ An email template stopped escaping itself
- β³ π The portal dashboard showed the wrong time
- β³ π’ The folder said 99 and the list showed 96