Перейти к содержимому
Меню
Чтобы взаимодействовать с сообществом, необходимо зарегистрироваться.
Этот вопрос был отмечен
3 Ответы
3381 Представления

I've recently noticed that my internal employees can see data, ie. quotations, that they shouldn't have access to.  On the backend the sales module is not available from the website front end they can click on my account and see quotations and other data that I'd like restricted.  

How do I get module access rights to also apply to the front end portal?

Аватар
Отменить
Автор

To clarify, the issues seems to be in the front end website. The user can select the drop down on their name and go to My Account. The seem to have access to all the records of the company. The users do not have portal access selected on their contact.

Лучший ответ

Hi Tim,

I wanted to provide some clarification regarding access to sales records in Odoo and how they are displayed on the website.

In Odoo, even if a user does not have Sales access rights, they may still be able to view records on the website if they have been added as a "Follower" to those records. The Odoo standard does not offer a specific access right to hide these records from the website.

To restrict access to certain records on the website, it is essential to remove the User as a "Follower" from the specific sales records or sale orders. By doing this, you can control the visibility of records on the website and ensure that only authorized users have access to them.

you can also refer https://apps.odoo.com/apps/modules/16.0/ks_access_manager_ninja/

Regards,

Ksolves Team!

 

Аватар
Отменить
Автор

Thank you for the additional insights. I was coming to this conclusion. The users in question are NOT listed as followers. However, they are listed as contacts of the company. I suspect that is allowing them to see the records from the website/portal side.

The manufacturing user group is allowing read only access to sales orders. I'm currently testing what the ramifications are for turning that access off.

Лучший ответ

Did you solve it? I have the same problem as you.

Аватар
Отменить
Автор

No, I did not but looking at our test DB that is upgraded to 17 it appears that internal users that do not have access to the sales app are blocked from seeing sales via the portal interface.

Лучший ответ

Hi,
Refer to the following blogs it shows how to set Access Rights

https://www.odoo.com/documentation/16.0/applications/general/users/portal.html

https://www.odoo.com/documentation/16.0/applications/general/users/access_rights.html

Hope it helps you

Аватар
Отменить
Автор

Thank you reply. I assumed it's somewhere in access rights but I can't seem to find it. Is there anyway to sort out what access right is allowing access from the page itself?

Related Posts Ответы Просмотры Активность
2
мая 23
2529
1
нояб. 23
1476
1
мая 25
2138
1
апр. 25
3212
1
апр. 25
4026