Closed Bug 1183899 Opened 9 years ago Closed 9 years ago

Restricting access of bugs submitted from the FSA Budget Request form

Categories

(bugzilla.mozilla.org :: Custom Bug Entry Forms, defect)

Production
defect
Not set
normal

Tracking

()

RESOLVED FIXED

People

(Reporter: tilee, Assigned: glob)

Details

Sorry, unsure which component to file this under!

Recently had a custom FSA Budget Request Form created here: https://bugzilla.mozilla.org/form.fsa.budget. The bugs created from this form are open/public. Had a problem in one of the bug where it was accessed by a non-affiliated member of the program https://bugzilla.mozilla.org/show_bug.cgi?id=1165671.

Afraid this will lead to leak of confidential information in the future. Would like to restrict access for future bugs created from this form to only the person who requested and the people who are cc-ed. Hope this is doable! Thank you so much in advance.
Component: General → Administration
Hello they might be able to make your bug reps only access or security
Flags: needinfo?(tilee)
(In reply to David Weir (satdav) from comment #1)
> Hello they might be able to make your bug reps only access or security

david, i don't think either of those groups are appropriate.


tj, would it be suitable to make the forms accessible to the reporter, people on the cc list, and mozilla employees (moco and mofo)?
Component: Administration → Custom Bug Entry Forms
(In reply to Byron Jones ‹:glob› from comment #2)
> (In reply to David Weir (satdav) from comment #1)
> > Hello they might be able to make your bug reps only access or security
> 
> david, i don't think either of those groups are appropriate.
> 
> 
> tj, would it be suitable to make the forms accessible to the reporter,
> people on the cc list, and mozilla employees (moco and mofo)?

Hi Byron! YES, that'd be perfect. Reporter, people on the cc list, and mozilla employees.
Flags: needinfo?(tilee)
(In reply to TJ Lee [:TJ] from comment #3)
> (In reply to Byron Jones ‹:glob› from comment #2)
> > (In reply to David Weir (satdav) from comment #1)
> > > Hello they might be able to make your bug reps only access or security
> > 
> > david, i don't think either of those groups are appropriate.
> > 
> > 
> > tj, would it be suitable to make the forms accessible to the reporter,
> > people on the cc list, and mozilla employees (moco and mofo)?
> 
> Hi Byron! YES, that'd be perfect. Reporter, people on the cc list, and
> mozilla employees.

As in the bugs created from the form accessible only to reporter, people on the cc list, and mozilla employees. But the budget request form itself still open/public. Thank you so much!
Assignee: nobody → glob
done.

the updated form won't be visible on bugzilla.mozilla.org until next week's push (generally late monday/early tuesday).

To ssh://gitolite3@git.mozilla.org/webtools/bmo/bugzilla.git
   028d280..9e60299  master -> master
Status: NEW → RESOLVED
Closed: 9 years ago
Resolution: --- → FIXED
(In reply to Byron Jones ‹:glob› from comment #5)
> done.
> 
> the updated form won't be visible on bugzilla.mozilla.org until next week's
> push (generally late monday/early tuesday).
> 
> To ssh://gitolite3@git.mozilla.org/webtools/bmo/bugzilla.git
>    028d280..9e60299  master -> master

Speedy, you rock Byron!
You need to log in before you can comment on or make changes to this bug.