How can I limit who can access CRX and CRXDE Light?

Answer, Resolution

If you have a Dispatcher configured in front of your CQ instance, you can block access to CRX and CRXDE Light using the following filter rule in you dispatcher configuration (dispatcher.any)

/ruleLabel{/glob "* /crx*"/type "deny"}

To control what features/links are displayed to the users on the welcome screen in authoring mode modify permissions for nodes under /libs/cq/core/content/welcome/features.

This would have to be done in CRX. Please see the following Knowledge Base article for instructions.CQ5.3: How to set CQ5.3 ACLs via CRX

Applies to

CQ 5.x

