I want to allow some users to read/view all fields in a ticket, but only be able to modify some of those fields. And some of the fields will be custom. A brief look at the documentation leads me to believe that this level of granularity of access control is not available out-of-the-box. I guess what I would want is for each field to have attributes like "roles allowed to read" and "roles allowed to modify" (or conversely some additional attributes on a role). Can what I want be easily done with some custom code? Other suggestions?