Remove the Account mapping in UCM (Admin Applet) and re-login as user2 and see what is shown in his profile. You need not do an Account mapping when it is coming from an external source. This mapping is needed only for Pre-defined Accounts in UCM.
Followed the suggestion said by you, Issue still persist..
User not behaving as expected.
In profile of user2 i see
User Name: user2 Roles: guest, authenticated Accounts: acc1, #none
This is because the role 'guest' and 'authenticated' has only READ access to the Security Group that you have assigned to the content. Please note that when you enable Accounts the final permission on the content is derived using intersection of 'Role to Security Group' AND 'Accounts'.
Am already familiar with the behavior of account & SG when applied to content.
Now what i did is i provided admin privileges to "user2".
But still i see user has only read permission.
Expected behavior: User should able to see all admin tab & also all the contents of the system.
What i see from the user proffile is Accounts r been applied to user but not permissions.
Just clarification...@user(RWD) this is the correct way to create accounts and assigning permissions in weblogic rite
The way you are setting the permissions in Weblogic is fine. Did you create a new group 'admin' and assigned this to the user2 in Weblogic? and still it does not show the administration tab.
The permissions are not shown in the user profile, it will be just acc1. Please try to update the content to know if you do not have sufficient privileges to do so, that shows you do not have access.
Also, try to enable 'checkordetermineaccess, userprofile' trace and see if you get more information.
Created SG with admin rights and assigned to user2,, its working as expected!!!
Yep it will not show permission in profile .. I can only see the content that has been created with acc1, when i tired to update "Insufficient privilege".
Don't see any errors in log also....