by eggsurplus

Control what your users can access and save time, money, and frustrations. Lock down sensitive data in SugarCRM or SuiteCRM to specific groups or teams. Supports unlimited assigned users, unlimited group assignments to records, custom layouts for each group, login/sudo capabilities and much more.

Free 30 day trial
Try it Now

By clicking you consent to share your profile with the developer

#2123 - Security Not Applied

Closed Installation created by m1dst 8 years ago

I've been asked (as a last resort) to look at a SugarCRM installation for a friend who is on a 30 day trial of SS. He's tried configuring it and I have also tried. All seems to work in terms of configuring the groups and roles.

The problem is everyone seems to have access to see everything regardless of if they are a member of the group or even no groups at all. Does the plugin need enabling somewhere?

  1. eggsurplus member avatar

    eggsurplus Provider Affiliate

    8 years ago

    Hi there!

    I suggest looking over this doc for what may have been missed: https://www.sugaroutfitters.com/docs/securitysuite/example-of-a-typical-setup

    Typically the biggest steps missed is either forgetting to add the groups to the records (accounts, contacts, etc), users to the groups, or roles to the groups that set the permissions for all users in that group.

    Always log out and back in for any test users after making a change with roles.

    • m1dst member avatar

      m1dst

      8 years ago

      Thanks. I think it was the login/logout trick which I hadn't done. I assumed it would be realtime. I'll keep playing, thanks.

    • eggsurplus member avatar

      eggsurplus Provider Affiliate

      8 years ago

      That one gets me, too. Sugar caches this at login as it's a fairly intensive query that adds up fast on each request.

  2. eggsurplus member avatar

    eggsurplus Provider Affiliate

    8 years ago

    Closing this out, but feel free to follow up if you have any more questions.

This case is public. Please leave out any sensitive information such as URLs, passwords, etc.
Saving Comment Saving Comment...
Rating
Rating