Tuesday, June 9, 2009

Buttons...buttons...whose has got the button?

Well not your customers anymore!

We were informed of a backdoor that allowed customers to access some Adminstrative functions. So they have been removed. These were not permissions you control but screen generated buttons. The logic assumed if you could get to the screen you should have the button.

Well the screen was wrong!

We have added additional logic that recognizes if the User is an Internal User or an External(customer) User. The Internal User will be presented with the buttons. The External User will not.

Orange Buttons lost:

On View/Edit/Select
  • Case#/ID
  • Information (External Users will still see the Hyperlink to view filew)

On Attribute View

  • Attributes