Enhancement #1587

IE000079SP: Security - Key-in certain URL on without Sign-on

Added by Norhaidah Md Dasuki about 12 years ago. Updated about 12 years ago.

Status:Closed - End of life cycleStart date:July 18, 2012
Priority:NormalDue date:July 20, 2012
Assignee:-% Done:

100%

Category:-Spent time:8.00 hours
Target version:-

Description

It was noted that without sign-on and straight key-in certain URL on IB application an error will appear with the relevant information about the error.

Penril are required to check whether this is program error or miss configuration on application.

From security point of view, unnecessary information should not be reveal to customer and user of the application.

Refer attachment send via email dated on 18/07/2012

ERROR.jpg (84.4 KB) Norhaidah Md Dasuki, July 18, 2012 18:38

IE000079SP_Security_-_Key-in_certain_URL_on_without_Sign-on.docx (471 KB) Norhaidah Md Dasuki, August 03, 2012 16:23

Firefox.jpg (121 KB) Siti Norahayu Mohd Desa , August 03, 2012 17:14

IE000079SP_RIB_UAT_08.08.2012-2.doc (1.14 MB) Anonymous, August 08, 2012 15:46

History

#1 Updated by Anonymous about 12 years ago

  • Due date set to July 20, 2012
  • Assignee changed from Anonymous to Almasi Moein

pls assist.

#2 Updated by Almasi Moein about 12 years ago

  • Status changed from New - Begin Life Cycle to Internal Testing
  • Assignee changed from Almasi Moein to Anonymous
  • % Done changed from 0 to 90

fixed and deployed to sit and uat.

#3 Updated by Anonymous about 12 years ago

  • Assignee changed from Anonymous to Norhaidah Md Dasuki

#4 Updated by Norhaidah Md Dasuki about 12 years ago

Test Key-in certain URL on without Sign-on
"http://10.6.6.20:9081/rib.uat/ib102/ibTransactionHistoryPrint.do"
Shows different result in IE and Mozilla (refer attachment)

Internet Explorer - Passed. System show page. <Session expired. You have left the browser idle for more than 5 minutes. Please login again.>

Mozilla - Failed. System display the Transaction History page.

Please verify.

#5 Updated by Almasi Moein about 12 years ago

  • Assignee changed from Almasi Moein to Norhaidah Md Dasuki

i have test it in the mozila firefox and it works as it supposed, you may retest or clear you cache and try to retest.

#6 Updated by Almasi Moein about 12 years ago

well, if you look at your ERROR.jpg file URL you can see you are testing it on PRODUCTION! make sure to test on SIT and UAT in both browser.

#7 Updated by Norhaidah Md Dasuki about 12 years ago

  • Assignee changed from Norhaidah Md Dasuki to Almasi Moein

Hi Moein,
Have clear cache and its in UAT environment. It shows correct page "System Time Out" in IE and Chrome but in FireFox when I tried again it shows page "404" <Sorry, the requested page could not be found!. Please select link below to continue: Home Page>.

*Am using Firefox 14.0.1

#8 Updated by Almasi Moein about 12 years ago

  • Assignee changed from Almasi Moein to Norhaidah Md Dasuki

i am using ff 14 as well and it shows the session time out, i asked hadi to test as well and it shows session time out error message as expected.

#9 Updated by Norhaidah Md Dasuki about 12 years ago

  • Status changed from Development / Work In Progress to Internal Testing
  • Assignee changed from Norhaidah Md Dasuki to Siti Norahayu Mohd Desa

Hi Ayu,

Kindly assist to test in Firefox.

Test Scenario: Key-in certain URL on without Sign-on
"http://10.6.6.20:9081/rib.uat/ib102/ibTransactionHistoryPrint.do"
Expected Result: System shall show "System Time Out" <Session expired. You have left the browser idle for more than 5 minutes. Please login again.>

#10 Updated by Siti Norahayu Mohd Desa about 12 years ago

  • File Firefox.jpg added
  • Status changed from Internal Testing to User Acceptance Test
  • Assignee changed from Siti Norahayu Mohd Desa to Anonymous
  • % Done changed from 90 to 100

Test Scenario :
Key-in the URL "http://10.6.6.20:9081/rib.uat/ib102/ibTransactionHistoryPrint.do" without sign-on.

Test Result for Firefox 12
Passed. Page display <Session expired. You have left the browser idle for more than 5 minutes. Please login again.>
Please refer an attachment for more information.

Hi Lee Lee,
Kindly proceed for user testing.

#11 Updated by Anonymous about 12 years ago

Dear all,

Had been tested in RIB UAT on 08.08.2012 and OK.

Refer attachment.

Thank you.

*********************************************************************
Halimah Mohammad Shukor | Virtual Banking | Electronic Banking Department | t +603-27311600 ext 2312

#12 Updated by Anonymous about 12 years ago

  • Status changed from Pending Prod Deployment to Closed - End of life cycle

deployed on 7 sept 3am-4am: sucessfully. tested by Halimah.

Also available in: Atom PDF