Page 1 of 1

CEMT Security Log

Posted: Wed Oct 17, 2018 9:34 am
by Ardavan
Hello,
After an earlier incident no administrator is claiming responsibility for it came to my attention that the CEMT does not log everything into the securitylog table. I know there isn't much that can be done directly from the CEMT itself, but imagine this:
Agent X somehow gets an administrators CEMT credentials and uses them to create a rouge OD user, or change the password of an existing user. Agent X then proceeds to use the shadow credentials to bla bla bla.... If there is only one CEMT admin then we can shame him/her for allowing their credentials to get pwoned, but if there is more than one admin then who do we hold responsible?

Re: CEMT Security Log

Posted: Wed Oct 17, 2018 9:45 am
by allends
What I gather from your post is you would like the CEMT to have an audit trail correct?

Re: CEMT Security Log

Posted: Wed Oct 17, 2018 11:54 am
by Ardavan
Correct, my apologies for the lack of clarity.

Re: CEMT Security Log

Posted: Wed Oct 17, 2018 12:11 pm
by allends
I would add votes to feature request 6767. It details requests for security and permissions in the CEMT tool.
Additionally, I would add a comment detailing your desire for an Audit Trail in the CEMT tool.
https://www.opendental.com/manual/featurerequests.html

Re: CEMT Security Log

Posted: Wed Oct 17, 2018 12:36 pm
by Ardavan
Thanks!