Project:
View Issue Details[ Jump to Notes ] | [ Issue History ] [ Print ] | |||||||
ID | ||||||||
0047853 | ||||||||
Type | Category | Severity | Reproducibility | Date Submitted | Last Update | |||
backport | [POS2] Core | major | have not tried | 2021-10-14 17:43 | 2021-10-18 14:04 | |||
Reporter | cberner | View Status | public | |||||
Assigned To | cberner | |||||||
Priority | normal | Resolution | fixed | Fixed in Version | TAP | |||
Status | closed | Fix in branch | Fixed in SCM revision | |||||
Projection | none | ETA | none | Target Version | TAP | |||
OS | Any | Database | Any | Java version | ||||
OS Version | Database version | Ant version | ||||||
Product Version | SCM revision | |||||||
Review Assigned To | caristu | |||||||
Regression level | ||||||||
Regression date | ||||||||
Regression introduced in release | ||||||||
Regression introduced by commit | ||||||||
Triggers an Emergency Pack | No | |||||||
Summary | 0047853: JIRA-2368: Permissions are wrong for drawer menu subentries if changing user | |||||||
Description | When pressing login, user actions permissions are not updated for the entries of groups of the drawer menu, resulting in this appearing as disabled when they should be enabled, and enabled when should be disabled, because the previous state is the one being mantained. For example, a Manager with permission to all subentries logs in, he has all options available. If he doesn't refresh, logs out, and an employee with no permissions logs in, he'll have the same access to the drawer menu subentries as the manager. Note: This doesn't affect the group button, for example Customers window works fine, and permissions are updated correctly. | |||||||
Steps To Reproduce | 1. Login in Backoffice as Openbravo and WhiteValleyGroup admin role 2. Go to Role window and select VallBlancaManual role 2.1. In UserActionAccess remove "SwitchCurrentWindow_OBPOS2_CustomerWindow" entry 2.2. You may logout from backoffice 3. Login in WebPOS as Vallblanca, check that Organization Variables subentry is available 4. Click on user Vallblanca to the top right, and change Profile to VallBlancaManual and check that Organization Variables subentry is disabled 5. Click Logout and login again as Vallblanca user Option Organization Variables appears as disabled, although you're connected with a role that has permission to that user action. | |||||||
Tags | No tags attached. | |||||||
Attached Files | ||||||||
Relationships [ Relation Graph ] [ Dependency Graph ] | ||||||||
|
Notes | |
(0132411) cberner (developer) 2021-10-18 13:39 |
MR created here: https://gitlab.com/obcustomers/AGAP/org.openbravo.core2/-/merge_requests/63 [^] |
Issue History | |||
Date Modified | Username | Field | Change |
2021-10-14 17:43 | guilleaer | Type | defect => backport |
2021-10-14 17:43 | guilleaer | Target Version | => TAP |
2021-10-14 17:43 | guilleaer | Status | scheduled => acknowledged |
2021-10-18 09:26 | cberner | Status | acknowledged => scheduled |
2021-10-18 13:39 | cberner | Note Added: 0132411 | |
2021-10-18 14:04 | cberner | Status | scheduled => resolved |
2021-10-18 14:04 | cberner | Fixed in Version | => TAP |
2021-10-18 14:04 | cberner | Resolution | open => fixed |
2021-10-18 14:04 | cberner | Review Assigned To | => caristu |
2021-10-18 14:04 | cberner | Status | resolved => closed |
Copyright © 2000 - 2009 MantisBT Group |