Configure Connection-Specific Permission Overrides in a Workspace
This article shows how to override the general Workspace role for one published connection by inheriting, denying access, or assigning a different supported role, allowing different locations in the same Workspace to have different authority.
What you need to know
- An explicit deny wins over allow, and no applicable allow means denied.
- Frontend button visibility is only guidance. QCSB rechecks authorization server-side and rejects forged Workspace/location/item references.
How to do it
- Edit the Workspace and locate the Joomla group row.
- Open its Connection overrides only for connections that need behavior different from the group’s Workspace role.
- Leave ordinary connections on Use Workspace Role.
- Choose another preset role when the group needs narrower/broader access on that connection, or choose No Access to block that connection entirely for the group.
- Save and test with the affected group. The override changes that group’s access to that connection in this Workspace only.
Verify the result
- Test Connection succeeds.
- The displayed/usable root is exactly the intended root and no parent folder is reachable.
- A normal authorized user can perform only the operations intended for that connection/Workspace role.
Important limits and mistakes to avoid
- Never broaden a connection root merely to work around a permission or provider error; fix the actual root/credential/hosting problem.
- A successful Super User test does not prove a normal Joomla group has correct Workspace access. Test with the real role.
Troubleshooting
- If the provider is unreachable, test the connection in Administrator before troubleshooting the Workspace UI.
- If an action is missing/denied, check Joomla menu access, Workspace allowed group, Workspace role, custom denies, connection override, and plan gate separately.
- Keep passwords, OAuth secrets/tokens, private keys, and unrestricted private paths out of public screenshots and support posts.
Community Discussion
For practical QCSB workflows and discussion with other Joomla site owners, visit the QC Storage Bridge Community. For private support, bug reports, account-specific entitlement issues, or feature requests, use the QuantaCade support system.