-
Type:
Bug
-
Status: Production Complete
-
Priority:
High
-
Resolution: Done
-
Affects Version/s: None
-
Fix Version/s: None
-
Component/s: BenAdmin
-
Labels:None
Steps:-
1] Log into stage site.
2] search and select JE DUNN company.
3] Make sure that all email flags are set.
4] Add one EE with receive email flag as Yes.
5] Add security questions for that EE.
6] Go on forgot password page and use this EE's userid and company also answer the secuirty questions and click on Next button.
7] Mail is being sent when we do this.
8] Now change the employee login status Disabled to Yes and click on save button.
9] Again change the employee login status Disabled to No and click on save button.
10] Try the forgot password scenario and observe
Actual Result:-
Mail is not being sent for Forgot Password scenario when employee login status is once changed to Disabled.
Expected Result:-
Mail should be sent every time if EE login status is enabled.
CC:Steve Allison SatyaSwapnil Pandhare
Issue is deployed on local environment now.
Rakesh Roy
Please share stage and production date.
Thanks,
Sheetal Bodhale.
Thanks we do need stage and production date on this. The client can test in STAGE if that helps. Thanks.
Stage ETA = 19th Sep
Prod ETA = 20th Sep
We will try to push early on stage on 16th Sep, if possible.
This is tested on Wt Stage - 14th Sept 2016
- added an employee with valid email id - set all the required email flags on company
- tested forgot password functionality [through the link present on log in page] with employee (when is log in disabled = No) - with employee (when is log in disabled = Yes) & again with employee (when is log in disabled = No) : in all the cases employee got the mail for reset password page and he could reset his password in all the cases.
Ready for Stage
CC - Deepali Tidke Rakesh Roy
Tracy Kot Team tested this today morning and it worked fine on our local environment. Now fix is on stage and you can ask client to test on stage environment and provide feedback.
I will do so and will let you know. Thanks.
Rakesh Roy the client did not have time to test stage. If you feel confident of the fix you can move to PROD since it impacts disabled log in users only. The other password fix was actually moved to prod without client testing and it worked fine.
thanks.
Hi Rakesh,
Tested this functionality on Stage for Austin for hspl company and observed that when an employee's login status is changed to Disabled then after doing this the mails are not being sent for Forgot Password.
Reopen in Stage.
Thanks,
Venkatesh
Rakesh Roy Mandar Kulkarni do you have a status update on this please?
Tracy Kot We'll try to push this to production on Friday 23rd IST.
Thank you Rakesh Roy
Hi Tracy Kot,
Please find below 3C's of the issue,
Concern: Mail is not sent to employee with disabled status.
Cause: Forgot password mail functionality is working fine for both enabled and disabled login status.
It is failing in below case only,
Employee login status is enabled and clicked on Forgot password,token is generated and mail is sent successfully.
and at a same time again clicked on forgot password for same employee with disabled login,Mail is not sent because of token check.
If you perform same scenario but clicked on link sent in mail then again clicked on Forgot Password,It will work.
Correction :Now we have removed above check.It will sent mail in any case.We will deploy it on local environment today.
CC:Swapnil PandhareSatyaRakesh RoyMandar KulkarniVenkatesh Pujari
Thanks,
Sheetal Bodhale
Hi Sheetal,
Tested the above fix on LB and verified that now every time whenever the user uses forgot password then mail will be sent irrespective of the Employee login status i.e enabled or disabled.
Ready for Stage.
Thanks,
Venkatesh
Please update ticket on priority to know when this will be moved to STAGE
This is ready for stage deployment, will deploy tomorrow morning 23rd Sep IST.
Tracy Kot This is deployed on stage, can continue testing on stage.
Hi Sheetal,
Tested the above fix on Stage and verified that now every time whenever the user uses forgot password then mail will be sent irrespective of the Employee login status i.e enabled or disabled.
Ready for Production.
Thanks,
Venkatesh
Thank you, once you find out let me know when it will be in prod. Thanks....
Also I have an OE JE DUNN in stage now will this fix be also moved to prod and our OE JE DUNN STAGE? Thanks.
Hi Sheetal,
Tested the above fix on Production and verified that now every time whenever the user uses forgot password then mail will be sent irrespective of the Employee login status i.e enabled or disabled.
Thanks,
Venkatesh.
Hi Tracy,
The issue has been fixed and deployed on production. Please could you verify and close the ticket.
Thanks,
Venkatesh
Advised Client. closing ticket. I will ask Client to test in PROD.
Mandar Kulkarni Venkatesh Pujari CLIENT TESTED IN PROD
Client tested the Log in Disabled - forgot password and found an issue.
Client name Steve Best; he disabled his account. He went through the entire “Forgot Password?” process and had NO problem resetting his password.
ISSUE: When he tried to login after that, it doesn’t let him login with his updated password. It asks him to check his login credentials:
When he login as ADMIN and reviewed the account, it’s still disabled. Resetting the password didn’t change the account status from disabled to not disabled.
SCREENSHOT ATTACHED
Sheetal Bodhale Vijay Siddha Rakesh Roy
Hi Swapnil,
Can you please get this issue checked on priority today?
Regards,
Satya Prakash
Hi Tracy Kot
Concern:
If employee login status is disabled then after resetting the password the employee is unable to Login.
Cause:
When the password is reset ,the system does not update the login status of employee, so the employee is unable to login.
Correction
Now we will prevent the employee from resetting the password if the login status is disabled.
We will be showing a message to contact the admin for login status.
Currently we are working on this and will update tomorrow.
Swapnil Pandhare Sheetal Bodhale
Thanks,
Chaitali
Thank you, please advise what the "message" will be.
Hi Tracy Kot
We will show the message - Your login status is disabled. Please contact Administrator to enable your login status.
Please let us know if this is fine or, there are other suggestions for the message.
Thanks,
Chaitali
Files Affected:
1)ForgotPassword.cshtml
2)ForgotPassword.vb
3)ForgotPassword.cs
Hi Rakesh Roy
Please verify or assign to other QA.
We have now prevented only the EMPLOYEE from resetting the password if the login status is disabled.
This change is not done for Company Admin and Partner.
Please verify for following scenarios:
1)Employee whose login status is disabled.
2)Employee whose login status is not disabled.
3)Employee whose Sequrity Que Ans are not there.
4)Employee whose Sequrity Que Ans are there.
5)Invalid User.
Though changes are not done for Company Admin login and Partner login ,please verify their functioning as well.
Chaitali Acharya Can the message be:
As a security measure, your login status is disabled due to too many unsuccessful attempts to log in. Please contact your system Administrator to enable your system account.
Hello, Can the message be:
Chaitali AcharyaAs a security measure, your login status is disabled due to too many unsuccessful attempts to log in. Please contact your system Administrator to enable your system account.
Hi Rakesh Roy
Please verify this on LB.
Now the Message is -
As a security measure, your login status is disabled due to too many unsuccessful attempts to log in. Please contact your system Administrator to enable your system account.
CC:Swapnil Pandhare Sheetal Bodhale Tracy Kot
Thanks,
Chaitali Acharya
Mandar Kulkarni Rakesh Roy Can you provide an update on this. I need this done before their OE starts which is on 11/7. so need this done before then.
Thanks.
Tracy Kot We'll make sure this will get deployed on production in next early week before 11/7.
This is tested on WT Stage - 28th Oct 2016
Working as per the expectations
Employees with login status enabled - can go on 'Forgot Password' link and reset their password (employees having email IDs entered in the system will receive the reset password page link in their email | employees who do not have entered their email ID in the system - will land on reset password page directly) after putting their security question's answers.
Employees with log in status as disabled - are not able to reset their password through 'Forgot Password' link- system shows them a message 'As a security measure, your login status is disabled due to too many unsuccessful attempts to log in. Please contact your system Administrator to enable your system account.'
In case of Admin and Partner - irrespective of their log in status (enabled / disabled) - they can reset their password though 'Forgot Password' link.
After resting the password - Partners / Admins with log in status enabled will be able to log in to the system with their new password. Whereas one with log in status as disabled won't be able to log in top system.
Ready for Stage
CC - Deepali Tidke Rakesh Roy Mandar Kulkarni Chaitali Acharya Tracy Kot
Hi what is the estimated time this would be ready for prod? Will this be in prod by their 11/7 OE date?
Hi will this be ready for prod by 11/7? is that possible? thank you.
Hi Tracy Kot,
We will move this fix on Stage tomorrow - 11/03 and on Production by Friday,11/4.
Thanks,
Hrishikesh.
Sheetal Bodhale / Chaitali Acharya Please Check-in this patch on Stage by tomorrow and on Production by 11/04.
Tracy KotThis is deployed on stage, could you please confirm whether its working fine or not?
Tracy Kot This is deployed on production, please check and confirm.
Hi is this done and in PROD? Can you confirm the message EE will see?
Asking client to confirm in production.
Thanks Tracy Kot
Rakesh Roy, client said they tested it did NOT work.
Client said that when EE is log in disabled they did NOT get the following message of: "As a security measure, your login status is disabled due to too many unsuccessful attempts to log in. Please contact your system Administrator to enable your system account." They did not see that message. Is that what you updated the message to show?
Anne Wright tested it and said even though she was disabled it did allow her to go through the security questions and it gave her a choice of employee / Admin. See document saved for her feedback. Does client need to have a non Admin test it???? Please see the word document attached for the client feedback and screenshots.
CC: Mandar Kulkarni disabled log in password reset client test feedback.docx
Sheetal Bodhale Could you please check? If you need any QA help, check with
Hrishikesh Deshpande
As per Tracy Kot 's comments we verified for the mentioned employee 'Anne Wright.'
We found that 'Anne Wright.' is a Company Admin and we have done changes for Employee only.
Could you please add a test employee on JE Dunn and verify .
CC:Swapnil Pandhare Sheetal Bodhale
Thanks,
Chaitali Acharya
Hi Chaitali Acharya,
This issue is Reproducing at our end too.
I have set Employees "Is Login Disabled = Yes." and then entered User ID at Forgot password link. Here it redirect me to Security question page. This should be fixed.
Please refer TEST HSPL employee on Stage for details :
FYI : Link is https://jedunn.stage.workterra.net/
Thanks,
Hrishikesh.
We are working on this and will reply on this by tomorrow.
CC: Shubhangi Jadhav
Thanks,
Chaitali Acharya
Hi, any updates on this one?
Hi Tracy Kot
Due to priority Issue WT-6478 we are unable to look into this right now.
But we have made changes for this in the local environment ,and after getting it reviewed from Vijayendra Shinde and Shubhangi Jadhav we will deploy it on Stage and Production.
CC:Swapnil Pandhare Sheetal Bodhale Vijayendra Shinde Shubhangi Jadhav
Thanks,
Chaitali Acharya
Hi Chaitali Acharya,
Code review has been done for pages mentioned by you. Changes looks fine to me. Plan remaining pages change.
Thanks,
Vijayendra
CC: Samir, Vijay Siddha, Swapnil Pandhare
This ticket is dependent on WT-7243.
When WT-7243 will be resolved, then this issue will resolved as well.
CC:Aarati Sabnis Sheetal Bodhale Swapnil PandhareShubhangi Jadhav Vijay Siddha Vijayendra Shinde
Satya
Thanks
Chaitali Acharya
Hello Rakesh Roy,
As per above comment of Chaitali Acharya, ticket WT-7243 is resolved now.
This ticket was dependent on WT-7243.
So assigning back to you.
Thanks,
Aarati R. Sabnis
CC Satya,Sheetal Bodhale,Swapnil Pandhare,Vijayendra Shinde,Venkatesh Pujari,Shubhangi Jadhav
client may have found an issue at testing so I will get the details and update the ticket.
please provide estimated time of completion for this JIRA.