Atrium CMDB - Atrium Explorer/New CMDB UI does not obey tenant specific access permissions while searching for CIs

Version 6
    Share This:

    This document contains official content from the BMC Software Knowledge Base. It is automatically updated when the knowledge article is modified.


    PRODUCT:

    BMC Atrium Core - CMDB


    COMPONENT:

    BMC Atrium Core


    APPLIES TO:

    AtriumCore 1808



    PROBLEM:

    The Atrium Explorer/Configuration Manager Dashboard provides full access to all attributes and relationships of all CIs independent of the tenant.

    The issue can be reproduced with the following steps:
    - Configure a user with Asset Viewer permission and access to company "A" and "B".
    - Create a CI that belongs to another Company (e.g. "C") in the BMC.Asset dataset

    This CI is not visible for the above user in the asset console as well as in the cmdb forms.
    By using the Atrium Explorer/New CMDB UI ,the same user can search for the CI without any issue.


    CAUSE:

    This is a defect and will be fixed in the Configuration Manager Dashboard in AtriumCore 20.02 or later


    SOLUTION:

     

      Follow the below steps to resolve the issue.
      
       
        
    • Remove Asset Admin from CMDB Console Admin Group in Group form
    •   
    • In Roles form, change the mapping for CMDB Data View All Role to point to CMDB RE User Group instead of CMDB Data View All.
    •  
       
       The same steps as above will be added as a fix in the code in AtriumCore 20.02 version or later.   
       
      

     


    Article Number:

    000355027


    Article Type:

    Solutions to a Product Problem



      Looking for additional information?    Search BMC Support  or  Browse Knowledge Articles