SDM user with no access type and employee contact type is able login with full privileges.
search cancel

SDM user with no access type and employee contact type is able login with full privileges.

book

Article ID: 273919

calendar_today

Updated On:

Products

CA Service Management - Service Desk Manager

Issue/Introduction

Issue:

If a user has no access type and the contact type is set as Employee can login as an Administrator.

 

Environment

USRD 17.3

Resolution

-> If a user does not have any access type specified then he would be getting all Admin privileges. As per best practice, every contact should have an access type defined.

-> If the users are coming from LDAP then refer to below tech doc:

   https://techdocs.broadcom.com/us/en/ca-enterprise-software/business-management/ca-service-management/17-3/administering/configure-ca-service-desk-manager/configuring-user-accounts/how-to-integrate-ca-sdm-with-ldap.html

Where it advised to have LDAP Group enabled as below:

-> We would need to map the LDAP group to the respective default access type which we like to assign to users.