Planner Security Bug
I have security set up so Developers can move an item in the workflow status from "Coding" to "Development Closed" and from here a Manager can move the status from "Development Closed" to "Testing Opened", if the developer tries to edit the item. They can't change the workflow status.
Once it's at "Testing Opened", the software tester can move the status to Test Planning and Execution, and then to "Testing Passed" or "Testing Failed" and the Manager can then move it back if more work is required.
The Developers and Software Testers cannot change the status other than forward or backwards within the small area of the workflow and this works perfectly when editing an item.
But when they're in the Planner, they can drag the item to any of the workflow areas they don't have rights to. When they right click and edit, it doesn't allow a futher status change, but of course, they've been allowed to change the status with drag and drop.
Is there a fix for this, or a workaround to stop users without rights changing the status of an item?
Thanks, Greg
Greg Martin
· 1 |
|
Thursday, November 8, 2012, 2:37:09 PM |