Case:
We have several projects in parallel in projector. Once I entited a project lead for any of the projects, he is able to change all resouces, not only resources assigned (affected) to project. So he is able to change his profile from "project lead" to "adminstrator" or he is able to delete the Administor.
Suggested solution:
A project lead must not be able to
1. set/change a profile to a higher level than project lead.
2. set/change a profile which is higher level than project lead; except assignment to his project.
3. delete a resource with is not only assigned to his project.
4. assign a resource to any project out of the projects he is assigned.
Resource and Contact screens have been adapted :
- "profile" and "is user" can only be changed by user granted to manage users (by default only admin).
- item can only be deleted by user granted to manage users (by default only admin)
This way :
- project leader cannot change profile of any resource (because it is the user profile)
- project leader cannot add or remove a user
Concerning Affectation, project leader can only manage affectations of resources to his own project.
It has always been implemented this way.
En poursuivant votre navigation, vous acceptez le dépôt de cookies tiers destinés au bon fonctionnement et à la sécurisation du site (gestion de session, reCaptcha) et à une analyse statistique anonymisée des accès sur notre site (Google Analytics). Si vous vous inscrivez, les informations que vous fournirez ne seront jamais divulguées à un tiers sous quelque forme que ce soit. En savoir plus
Cookies settings
×
Functional Cookies
Ce site utilise des cookies pour assurer son bon fonctionnement et ne peuvent pas être désactivés de nos systèmes. Nous ne les utilisons pas à des fins publicitaires. Si ces cookies sont bloqués, certaines parties du site ne pourront pas fonctionner.
Session
Please login to see yours activities!
Other cookies
Ce site web utilise un certain nombre de cookies pour gérer, par exemple, les sessions utilisateurs.