Welcome to the Axosoft Community, Sign in | Register | Help
in Search

Question on how to use Security Roles?

Last post 09-06-2007, 1:01 PM by Tom Harder. 7 replies.
Sort Posts: Previous Next
  •  09-05-2007, 11:10 AM 13075

    Question on how to use Security Roles?

    I am trying to create 2 scenarios, and cannot figure out how to do it with Security Roles and Field Templates:

    1. How can I create the scenario where a user can be made read only to everything?  Meaning they can open defects, features, etc., view attachements, notes, etc., but they cannot change any of the data?  I find that if I set the Security Role to not allow "Edit Defect", then I cannot open the defect itself.   Is this by design?  Are read only users expected to only view defect information in the grid since they cannot open a defect up?  Or am I missing something?

    2. How can I create the scenario where users see a different field template for the same defects, based soley on who they are.  I can only seem to use the Advanced area of Security Role to make fields disabled for some users, but enabled for other users.  But both users still see the sam fields.  How can I hide/show fields in a field template based on who the user is?

  •  09-05-2007, 11:21 AM 13076 in reply to 13075

    Re: Question on how to use Security Roles?
    Another issues relating to my scenario #1.  I cannot seem to make Tasks read only no matter what I do.  A user seems to be able to ceated/edit/delete tasks regardles of Security Role.  How do I prevent this?
  •  09-05-2007, 12:24 PM 13080 in reply to 13075

    Re: Question on how to use Security Roles?

    Found another issues with scenario 1 (trying to create a read only user).  If I can't give a user "Edit Defect" access (because then they can edit notes and descriptions, then how do they view custom fields that are large text?  Custom fields that are large text cannot be added to the Main window.

     

  •  09-05-2007, 4:36 PM 13089 in reply to 13075

    Re: Question on how to use Security Roles?

    Hello mdp2176,

    Let me start with your second question, and then we'll get to the first one.

    2) There is currently no way within OnTime to apply different field templates based on the user. Field Templates are either applied to a project or to a workflow step. If you'd like to have the ability within OnTime to apply templates based on users, I suggest submitting the idea as a feature request in our Customer Portal. Our developers will consider the idea when they're working on future releases of OnTime.

     
    1) Yes, this is by design. If you configure a security role to only be able to 'view' items, then a user with that role assigned to them will only be able to view the item from the main grid. Within OnTime 'opening' an item is the same as 'editing' the item, as you'll notice the window that opens up when editing an item is labeled 'Edit Defect'(for example). Tasks are an exception to this, because if they are created by a user, assigned to a user, or if they're Publicly viewable, they will be editable by that user.

    If you want your users to be able to open the 'Edit' window to view certain fields in that form, yet not be able to edit any fields, then you'll have to rely on Field Templates. You can configure field templates in a way that each field is visible, but not editable.

     

    Let me know if you have any further questions, or if you need further clarification.


    Thank you,

    Tom Harder
    Axosoft Support
    support@axosoft.com
    1.800.653.0024 option 3
    --'Fear the Bug' Podcast--
  •  09-05-2007, 5:50 PM 13092 in reply to 13089

    Re: Question on how to use Security Roles?

    Thanks.  I am still not following something.  How do I create a Security Role that is only "View Defect" and allow them to VIEW large text fields.  Seems to me that this is impossible because a security role with only "View Defect" cannot open a defect into the edit window.  But custom large text fields cannot be viewed in the Main window.  So how do I achieve this?

  •  09-06-2007, 8:37 AM 13097 in reply to 13092

    Re: Question on how to use Security Roles?

    Hello mdp2176,

    Because configuring a 'view-only' role only allows a user to view items from the main grid, there would be no way to view custom large test fields.

    It isn't possible within OnTime to create a strictly 'view-only' security role and still view the large text fields, as they only ever display from the 'Edit' window. If the user cannot open the 'Edit' window, those fields won't be visible at all.


    Thank you,

    Tom Harder
    Axosoft Support
    support@axosoft.com
    1.800.653.0024 option 3
    --'Fear the Bug' Podcast--
  •  09-06-2007, 10:02 AM 13098 in reply to 13097

    Re: Question on how to use Security Roles?

    "It isn't possible within OnTime to create a strictly 'view-only' security role and still view the large text fields"

    Wow, that is really disappointing.  Is not the capability to restrict read/write data a basic requirement of any software?  The fact that I can select "View Defect" as a separate option from "Edit Defect" in a security role is very misleading - large text fields really can't be "Viewed" as the setting implies.

     

  •  09-06-2007, 1:01 PM 13100 in reply to 13098

    Re: Question on how to use Security Roles?

    Hello mdp2176,

    In our next major release we're developing some additional feature enhancements that will address your concerns.

    To give you just one example of what to expect, in our next major release custom large text fields can be displayed on the main "Details" pane. This would allow customers like yourself to configure 'view-only' roles that will still be able to view those large text fields without having to open the 'Edit item' window.

    If you notice something within OnTime, that in your opinion can or should be improved upon, help us by reporting it through our Customer Portal. Our developers use all of those submissions to help them determine what path to take future development of our product. We value your opinions and feedback about OnTime, and in turn we hope that discussions like this one will result in our product becoming a more powerful and effective tool.


    Thank you,

    Tom Harder
    Axosoft Support
    support@axosoft.com
    1.800.653.0024 option 3
    --'Fear the Bug' Podcast--
View as RSS news feed in XML

© 2002 - 2007, Axosoft, LLC. All Rights Reserved. | Privacy
Bug Tracking | Defect Tracking Videos | Help Desk Software