Contents
Multisite - Plugixa Advanced User Role Editor
The plugin runs per site. On a multisite network each site has its own roles, and the editor on a site shows and changes that site’s roles only.
Network-wide role synchronisation is not in this version. Changing a role on one site does not change it on another. To copy roles between sites of a network, use Export and import on each one.
What is kept per site
Each site has its own:
- roles and the permissions in them (this is how WordPress stores them);
- plugin settings, including who can use the editor and which features are on;
- restore points and History;
- redirects.
Each site sets itself up the first time the plugin loads there. The plugin’s own permissions are given to that site’s Administrator role and its restore point table is created.
Super administrators
A network super administrator can do everything on every site, whatever roles they hold on it. The plugin reflects that rather than pretending otherwise.
| Where | What you see |
|---|---|
| Check access | “[Name] is a network super administrator, so every check passes.” The roles are not walked through, because they do not decide the answer. |
| A person’s page | “This is a network administrator. Their access does not come from roles on this site, so there is nothing to change here.” A site administrator who is not a super administrator cannot change a super administrator’s account. |
| Saving changes | A super administrator is treated as holding every permission, so they can grant or take away anything. |
| The lockout check | Skipped for super administrators. They cannot lock themselves out by editing a role, so refusing their change would be a false alarm. |
Rules that differ on a network
The last-administrator rule does not apply. On a single site, the last account with the Administrator role cannot lose it. On a network this is left to network administrators, whose access does not depend on a site’s roles, so a site with no administrator can still be recovered from the network. Removing the last administrator of a sub-site is therefore allowed.
“Only one administrator” is not reported. For the same reason, Health check does not raise that finding on multisite. “Nobody holds the administrator role” is still reported.
Network permissions appear. Permissions that only exist on multisite, such as “Manage the network” and “Change network settings”, are shown in their own area, described as “Only on multisite. These control every site in the network.” On a single site that area is not shown. Managing the network, its sites, users, plugins, themes and settings all count as full-control permissions.
Network-activated plugins are recognised. When the plugin works out which installed plugin a permission probably belongs to, plugins activated for the whole network count as active.
Uninstalling on a network
Uninstalling removes the plugin’s own data from every site in the network: settings, restore points, redirects, scheduled tasks and the plugin’s own permissions. The roles themselves, and every change you made to them, stay on each site. See Privacy and uninstall.
What to do next
- Copy roles between sites with Export and import.
- Read the rules that still apply in Safety guardrails.