New security roles in v20 and reporting

team-network@naturalnetworks

Gold Partner
Basic Certified
Joined
Jun 17, 2016
Messages
19
Reaction score
4
With the new security roles, we have to make someone a Manager role so they can run reports. Some of the additional items they get access to isn't a big deal, but they also get access to the configuration details of extensions and VM's pins for extensions. The problem with this is managers at companies don't want lower-level employees to be able to get access to more sensitive settings that could break things or give them access to other people's voicemail. But at the same time, they don't want to spend their time running on-demand reports that are needed, they want to delegate it. Would be great if we could have a role that they can only run reports but not seeing it. How is everyone else handling this?

@Nick:I know this should probably go into feature requests, but would be awesome if we could create our own security roles and what permissions they have. Just a thought...
 
  • Like
Reactions: MayurPatel
  • Like
Reactions: IrinaP_3CX
You can create reports currently as a manager and have them sent to various emails currently.

We are also working on our new reporting engine which will give you more flexibility. See the information at https://www.3cx.com/blog/releases/improved-reporting/
Hi Nick!

I get that we can make them managers, but then they get access to way more then they should have / need (least-privilege security model) and, frankly, can break extensions. With update 5, could you ask the developers to add a security role that is reporting access only?
 
  • Like
Reactions: MedCentro
No need. Look at the document I posted. They will be able to get the reports from Grafana or Power Bi directly! No need to generate them from the PBX.
 

Latest Posts

Forum statistics

Threads
111,962
Messages
589,993
Members
164,867
Latest member
swegner