# User unable to login into application after getting added to a user group

**URL:** <https://community.bloomreach.com/t/user-unable-to-login-into-application-after-getting-added-to-a-user-group/778>\
**Category:** Experience Manager (PaaS/OnPrem)\
**Created:** [February 1, 2019, 1:32pm UTC](https://community.bloomreach.com/t/user-unable-to-login-into-application-after-getting-added-to-a-user-group/778 "2019-02-01T13:32:30Z")\
**Posts on this page:** 3\
**Page:** 1

<div class="post-metadata">

**Author:** ![kiki](https://yyz1.discourse-cdn.com/flex027/user_avatar/community.bloomreach.com/kiki/32/529_2.png) [@kiki](https://community.bloomreach.com/u/kiki)\
**Post date:** [February 1, 2019, 1:32pm UTC](https://community.bloomreach.com/t/user-unable-to-login-into-application-after-getting-added-to-a-user-group/778/1 "2019-02-01T13:32:30Z")

</div>

Hi everybody,

I created two users and added them to user groups just like [https://www.onehippo.org/library/administration/user-management.html](https://www.onehippo.org/library/administration/user-management.html) and [https://www.onehippo.org/library/concepts/security/set-permissions-on-folders.html](https://www.onehippo.org/library/concepts/security/set-permissions-on-folders.html)

However the new users are unable to access to application/console(due to unavailable permissions). Do i need to give them any other permissions, apart giving them visibility to the folders they are permitted to. ?

thank you in advance

---

<div class="post-metadata">

**Author:** ![machak](https://yyz1.discourse-cdn.com/flex027/user_avatar/community.bloomreach.com/machak/32/1298_2.png) [@machak](https://community.bloomreach.com/u/machak)\
**Post date:** [February 1, 2019, 1:53pm UTC](https://community.bloomreach.com/t/user-unable-to-login-into-application-after-getting-added-to-a-user-group/778/2 "2019-02-01T13:53:44Z")

</div>

see:

> **[How to restrict access to the cms and console applications - BloomReach...](https://www.onehippo.org/library/concepts/security/how-to-restrict-access-to-the-cms-and-console-applications.html)**
>
> Open Source Enterprise Content Management

---

<div class="post-metadata">

**Author:** ![kiki](https://yyz1.discourse-cdn.com/flex027/user_avatar/community.bloomreach.com/kiki/32/529_2.png) [@kiki](https://community.bloomreach.com/u/kiki)\
**Post date:** [February 1, 2019, 7:30pm UTC](https://community.bloomreach.com/t/user-unable-to-login-into-application-after-getting-added-to-a-user-group/778/3 "2019-02-01T19:30:25Z")

</div>

I want the new users to only see the folders I have given them access. The rest should be invisible.  
The document says the user should be an author or editor at the root node, which contradicts my use case.  
These are my current settings.  
frontend:privileges: jcr:read  
frontend:privileges.path: /content/documents

If i remove privileges path would it remove the entry criteria ?
