« Back to Product

Documentation

IPS_RemoveRoleFromUser

 bool IPS_RemoveRoleFromUser (string $User, string $Role) 

Parameters

User

Name of the user (case-sensitive)

Role

Name of the role to be removed (case-sensitive)

Returns

If the function succeeds, it returns TRUE, otherwise FALSE.

Description

The function removes the role Role from the user User. The permissions of the role no longer apply to the user afterwards; the role itself is kept.

Warning

This function is only available for licenses that include the RBAC feature (Permission Control). Otherwise it fails with "This function is only available for licenses with the RBAC feature enabled!". If there are more users than the license allows (10 users by default, the @admin user is not counted), it fails with "Your license is currently limited to 10 users. Please consider upgrading the license to more users!" (the number is the limit of the license).

The currently logged in user (see IPS_GetLoggedInUser) must be an administrator, i.e. the @admin user or a user with the @admin role. Otherwise the function fails with "Administrator permissions are required for this action!".

If the user does not exist, the function fails with "User with name '…' does not exist". If the role is not assigned to the user, it fails with "User with name '…' does not have Role '…' attached". The @admin user cannot be modified; trying to do so fails with "User @admin cannot be modified!".

See also: IPS_AddRoleToUser, IPS_DeleteRole

Example

if (IPS_UserHasRole('anna', 'visu')) {
    IPS_RemoveRoleFromUser('anna', 'visu');
}
Any questions?