I am currently working on a project using iX Developer 2.22 and have encountered an issue with the Show Users Dialog feature. I require the ability for users to add new users on the site in order to track actions through the Audit Trail. I have implemented a button that opens the Show Users Dialog on a screen accessible only to individuals in the Supervisor group. However, users in the Supervisor group have the capability to modify settings for users in different groups, such as changing passwords for users in the Factory group and gaining unauthorized access to machine settings. Despite reviewing the Security settings, I have been unable to find a solution to prevent this security vulnerability. Can anyone provide guidance on how to address this issue and enhance security measures, or have I overlooked a key step in the configuration process?
I recently received a response from Beijer tech support regarding a security flaw in a dialog. The issue was confirmed to create a significant security vulnerability. Surprisingly, Beijer does not plan to address this concern, as there are users who prefer to have such vulnerabilities on their machines. Therefore, I am left with no choice but to familiarize myself with C# and develop my own dialog. This situation is quite frustrating to me. It is disappointing when companies promote 'open' systems, only to shift the responsibility of adding necessary functions onto users, causing unnecessary inconvenience.
Have you discovered any answers or advancements related to this problem?
Although a solution was found, it may not be the answer you were hoping for. I personally chose to discontinue using Beijer HMIs after this experience. However, there are still active Beijer HMI users on the site who may be able to provide you with a more suitable solution.
It sounds like you've configured most things correctly, but an aspect you might need to review is the specific roles and permissions for each user group. In iX Developer, you can assign specific access levels to every group. So, considering your case, you may want to adjust the permissions within the Supervisor group that restrict changes to other users' settings. Additionally, ensure that the Factory group is assigned an access level that doesn't permit password changing by another group. I'd recommend consulting the user manual or specific component documentation regarding user management to be sure the roles are established in line with your desired security profile. Hope this helps!
✅ Work Order Management
✅ Asset Tracking
✅ Preventive Maintenance
✅ Inspection Report
We have received your information. We will share Schedule Demo details on your Mail Id.
Answer: Answer: To enhance security in Beijer iX Developer, consider restricting access to the Show Users Dialog feature based on user roles and permissions. This can help prevent unauthorized access to sensitive information or settings.
Answer: Answer: Yes, you can restrict the actions that users in the Supervisor group can perform within the Show Users Dialog by adjusting the permissions and settings in the Security configuration of iX Developer. Ensure that users in the Supervisor group only have access to modify settings for users within their own group.
Answer: Answer: To prevent users in the Supervisor group from modifying settings for users in different groups, review the Security settings in iX Developer and adjust the permissions accordingly. Ensure that users in the Supervisor group are only able to manage settings for users within their designated group to avoid security vulnerabilities.
Join hundreds of satisfied customers who have transformed their maintenance processes.
Sign up today and start optimizing your workflow.