Security

Release notes on Security and related issues.

Version Type Description ID

19.2.0.0

CORR Users who do not need to edit context properties or user security settings do not require grant permissions for the following security keys to run the Client Shell:
  • Core/Context/Read
  • Core/Security/View Permissions
DEVCORE3-5175
19.4.0.0 CORR Fixes: In some instances, the Tp4 Workstation or Tp6 Client shell may send the user's credentials to the SrvShell in an HTTP Basic Authorization header field, which is open text and therefore not considered secure. DEVCORE3-5364
19.9.0.0 ENH Security permissions granted to system administrators and Trapeze6 Client Shell users for some operations have been configured to be always set to Deny for Anonymous users. The security permissions granted system administrators are:
  • Core/Admin/
  • Core/Context/Write
  • Core/Security/Edit Users and Groups
  • Core/Security/Set Permissions
  • Core/TableEdit/
  • Core/SqlDirect/
The security permissions granted Trapeze6 Client Shell users are:
  • Core/File/Browse
  • Core/File/Write
DEVCORE3-5430
19.15.0.0 CORR An issue where an error message appeared when saving attribute changes on built-in identity type users has been fixed. DEVCORE3-5486