GoldMine Web (GMWEB) - Restricted fields (no read access) are displayed in GoldMine Web - data from such fields are displayed with a N/A but the field is not really expected to be visible at all for the restricted users

Version 2

    Details

    GoldMine Web (GMWEB) - Restricted fields (no read access)  are displayed in GoldMine Web - data from such fields are displayed with  a n/A but the field is not really expected to be visible at all for the  restricted users

     

    [STEPS TO PREPARE]
    Within GoldMine and with master rights
    1. Right Click on for example Facebook (UFACEBOOK) > Properties
    2. Security Tab
    3. Set Read rights only to MASTER
    4. OK
    5. Repeat the same for KEY3 (usually Interest)
    6. Browse to any public contact record and make sure to enter values into the 2 fields

     

     

    7. Log in as any non master user and browse to the same contact record
    8. Verify if you can see the KEY3 and UFACEBOOK information

     

     

    [STEPS TO REPRODUCE]
    1. Log into GoldMine Web as the same non master user as in step 7.
    2. Browse to / Open the specific contact record
    3. Update icon
    4. Verify if the user can see Facebook and KEY3

    [RESULT]
    The fields can be seen (although the values do not show and  instead it appears as n/a. For the user it appears even as if the fields  an be edited (whereby any change will be dismissed)

     

     

     

     

     


    Resolution

    [INFORMATION]
    - Technically  the field restriction is respected as
    a. The user does not see the field value
    b. The user cannot update  the field
    It is unexpected to see even the field on screen in  GoldMine Web
    - This is logged as RM # 246480