You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Describe the bug
Nearly all lists in Kitodo.Production are filtered by the users currently selected client. Two exceptions are the "Clients" list itself and the "Roles" list on the "Users" page. While it can be argued that the "Clients" list is a justified exception, the "Roles" list should definitely be filtered by client. Instead it is actually sortable by clients, but that is of little use and discloses information that shouldn't be visible to the user in this situation, since there is always a specific client selected in the system that all displayed information should be based upon.
To Reproduce
Steps to reproduce the behavior:
Go to "Users" page
Click on tab "Roles"
See error
Expected behavior
The role list should be filtered by client, like all other lists in the system.
The text was updated successfully, but these errors were encountered:
While I do see your point I think hardening (might even say "fixing") our multi client system has to have higher priority.
I know and we have even a multi client system but with this "fix" there imore work on adjusting the roles after updating to a new version or on need (f.e. security reasons) to change them.
Describe the bug
Nearly all lists in Kitodo.Production are filtered by the users currently selected client. Two exceptions are the "Clients" list itself and the "Roles" list on the "Users" page. While it can be argued that the "Clients" list is a justified exception, the "Roles" list should definitely be filtered by client. Instead it is actually sortable by clients, but that is of little use and discloses information that shouldn't be visible to the user in this situation, since there is always a specific client selected in the system that all displayed information should be based upon.
To Reproduce
Steps to reproduce the behavior:
Expected behavior
The role list should be filtered by client, like all other lists in the system.
The text was updated successfully, but these errors were encountered: