/** * Add rules for "global_admin" role. * * @param Acl $acl */ protected function addRulesForGlobalAdmin(Acl $acl) { $acl->allow('global_admin'); $acl->deny('global_admin', 'Omeka\\Entity\\User', ['change-role', 'activate-user', 'delete'], new IsSelfAssertion()); }