Project:
View Issue Details[ Jump to Notes ] | [ Issue History ] [ Print ] | |||||||||||
ID | ||||||||||||
0008552 | ||||||||||||
Type | Category | Severity | Reproducibility | Date Submitted | Last Update | |||||||
feature request | [Openbravo ERP] C. Security | major | always | 2009-04-12 13:33 | 2009-05-22 19:36 | |||||||
Reporter | roklenardic | View Status | public | |||||||||
Assigned To | iciordia | |||||||||||
Priority | normal | Resolution | open | Fixed in Version | ||||||||
Status | new | Fix in branch | Fixed in SCM revision | |||||||||
Projection | none | ETA | none | Target Version | ||||||||
OS | Linux 32 bit | Database | PostgreSQL | Java version | 1.6.0_12 | |||||||
OS Version | Ubuntu 9.04 | Database version | 8.3.7 | Ant version | 1.7.1 | |||||||
Product Version | 2.50beta | SCM revision | ||||||||||
Review Assigned To | ||||||||||||
Web browser | ||||||||||||
Modules | Core | |||||||||||
Regression level | ||||||||||||
Regression date | ||||||||||||
Regression introduced in release | ||||||||||||
Regression introduced by commit | ||||||||||||
Triggers an Emergency Pack | No | |||||||||||
Summary | 0008552: Openbravo user should be removed/deactivated | |||||||||||
Description | Openbravo user has the following issues: - it contains access to System Administrator role and Big/SmallBazaar admin roles - it receives admin and user roles of any new clients created using the Initial client setup - the above issues considerably confuse people/students starting to use OpenbravoERP. Moreover, there should be no superuser that has access to System Admin and Client user role(s) | |||||||||||
Proposed Solution | Since Big/SmallBazaar as well as the application dictionary already has lots of data that points to Openbravo user (AD_USER_ID=100), the user should have all its roles removed and the user itself should be deactivated. Instead, user System (password System) should be used to create any System Admin tasks and all new clients receive their own users+roles (e.g. username ClientAdmin with password ClientAdmin) | |||||||||||
Tags | No tags attached. | |||||||||||
Attached Files | ||||||||||||
Relationships [ Relation Graph ] [ Dependency Graph ] | ||||||||
|
Issue History | |||
Date Modified | Username | Field | Change |
2009-04-12 13:33 | roklenardic | New Issue | |
2009-04-12 13:33 | roklenardic | Assigned To | => rafaroda |
2009-04-12 13:33 | roklenardic | Regression testing | => No |
2009-04-12 13:35 | roklenardic | Relationship added | related to 0004293 |
2009-04-23 11:48 | rafaroda | Assigned To | rafaroda => pjuvara |
2009-05-22 19:36 | pjuvara | Assigned To | pjuvara => iciordia |
Copyright © 2000 - 2009 MantisBT Group |