Project Pivot Report restricted although configured as documented

Issue #865 resolved
Former user created an issue

Dear Andriy,

i tried to configure the addon a bit more strict to not allow everybody to see everything, but somehow this is not working for user "snschmie". Please check following screenshots for more details, the user was intended to be configured to see all the time entries for his group "BISS" in the according project.

Comments (3)

  1. Andriy Zhdanov

    Hi Hans,

    As gadget says, user is not in Timesheet Auditors Groups. Documentation is slightly wrong. As you can see for other cases, Auditors Role does not allow to see others timesheet. Auditors Role just narrows down the visibility of others timesheet, similarly to restricted groups. So if user is in Auditors Groups or Auditors Groups is not set, user can see others timesheet only for Projects that he or she is in Timesheet Auditor Role. I've updated the doc, sorry for inconveniences caused.

    Thank you.

  2. Former user Account Deleted

    Hi Andriy, thanks for the quick response! Based on the updated docu i could fix the current issue here, but please think about following situation/question:

    Does "same group" or "different" group mean the auditor group? Or does it check for all other groups two users are both in? As example User 1 is in group A & B and "A" is the auditor group, does he see also the logs of User 2 which is in group B & C?

    From my point of view auditor group should see all logs, the restricted groups only logs of their users and auditor roles the logs of the according project. Currently this seems to be not possible, or did i get something wrong?

    Best regards, Hans-Hermann

  3. Andriy Zhdanov

    In the particular case, yes User 1 will see User logs, assuming there is no Restricted Groups configured.

    These options should be interpreted as follows:

    Auditors Groups is the most important, it just says - users in selected groups can see other users timesheet. If user is not in a selected group, he or she can not ever see other users logs.

    Auditor Roles will let user see other logs for the projects he or she is in the selected role only. It is meant to let users see project members work logs only.

    Restricted Groups will let user see other logs of users of the same group only. It is meant to let users see team members work logs only.

    So, if in your example, there Restricted Groups is configured and is set to C, then User 1 will NOT be able to see Use 2 logs.

    Hope it makes sense.

  4. Log in to comment