UCCX 7.0 Supervisor's Change Access to CSQ

Greetings,
We've recently upgraded to UCCX 7.0.1SR5 and one of the features that was of interest to us was the Supervisor's ability to change the skill levels of the agents in their team.  However, when logging into /appadmin as a supervisor, an unfortunate byproduct is the supervisor's ability to change the CSQ names and Resource Pool Selection Model.  Having change rights to either of these fields would obviously negatively impact any script that references them.  In my opinion, a supervisor shouldn't have these rights.  Attached is a screen shot of /appadmin when logged in as a supervisor.
I've opened a TAC case and so far, they are telling me that this is working as designed.  I just don't buy it as this is an administrator's function in my opinion.  Has anyone found any solution to this?
Thanks,
Jeff

I don't mean to argue, but this is a terrible design if this is the case.  Why would anyone give the supervisor the rights
to change the name of a CSQ which is hard coded into a script?  This is an administrator's function, not a supervisor's.  If a supervisor changes the name of a CSQ, the script will error out and calls will not complete.  That can't be working as designed.  Instructing supervisors "don't change the name of the CSQ or routing method" is not an option.
Thank you,
Jeff

Similar Messages

  • UCCX list of supervisors

    Looking to export a list of those users in UCCX that have supervisor rights, so I can have the management team clean up their users.
    Seems simple enough, but haven't found a way to do this yet. 

    Hi Andrew,
    You can access the UCCX Admin->Tools->User Management->User Configuration page, and click on the Capability column sort button (up and down arrow)here, you will see th list of Supervisors, Administrators, Reporting Users, Agents here.
    May be you can take the snapshot of the this page where Superviors capacity is listed.
    Note: The first 75 found will be displayed.
    So please make sure you sort it twice to check if the supervisors are listed first so that you dont miss any one there.
    Hope it helps.
    Anand
    Please rate helpful posts...

  • How to restrict the change access in CRM for OLTP orders

    Hi Guru's,
    Please let me know  how to restrict the change access in CRM for the orders that are created in ECC. The ECC orders will only for display in CRM but not for change,
    We have  the orders that are  created in ECC, it will flows to CRM and should restrict the access to get in to the change mode in CRM but as of now CRM  system is allowing change mode for ECC orders and ending up with errors.
    Is there any additional middleware parameter that needs to be added to SMOFPARSFA table to get this functionality! Please advice! Thank your for your help.
    Regards
    Suneel

    Hi.
    You can use the PFCG role to control if the user is able to create, change, delete or only display a business transaction type.
    Regards.

  • Is there api function to change access mode and set a passcode to recording in meeting?

    Is there api function to change access mode and set a passcode to recording in meeting?
    When I'm trying to use "action=acl-field-update&acl-id=SCO_ID_RECORDING&field-id=meeting-passcode&value=MY_PASSC ODE" it just clean the password and do not set it or change.
    And "action=permissions-update&acl-id=SCO_ID_RECORDING&principal-id=public-access&permission- id=view-hidden" do not work too.

    There is not a specific API for doing this. This was discussed in the other Connect forum here, Adobe Connect User Community.
    For you call I would make the second part differently. Instead of 'field-id=meeting-passcode&value=MY_PASSCODE' I would call 'meeting-passcode=MY_PASSCODE' and see if that worked better.

  • Limit change access to all useres exept the one that created the document

    Hi,
    I wonder if it's possible to limit the change access only to the user that has created the document when it's in a specific status.
    This is what the customer wants:
    When a document is set to status K the document should be locked and no other users should be able to create a new version.
    There should be a admin group that can create new versions and change the document. - This is solved
    Best regards Kristoffer

    Hi Krip,
    generally I would recommend you to maintain one status of type 'O' for a document type in your system. This kind of status will allow a second user to display an already checked out original. If user A checks out the original and there is such a status maintained for this document type the system will change the status automatically to this status of type 'O'. Then a second user is able to display the last checked in version of this original in CV03N too. Without such status type the second user is not able to display the checked out file. This was implemented to avoid that two users may be able to change the same original at the same time. I hope this information could be useful for you.
    Best regards,
    Christoph

  • How to change access point name

    Need to know how to change access point name for straight talk on iPhone 4

    There are several other threads here about doing this, or you can look up the "sim swap" method, documented here: http://www.jgmedia.biz/how-to-get-data-and-mms-working-on-straight-talk-iphone-4 -and-iphone-4s-on-ios-6-updated-sim-swap-method/. This does require temporary access to a T-Mobile or Simple Mobile SIM/Micro-SIM card.

  • Change access in SE16

    Hi
    I have a certain role assigned to a user in the D system which gives change access to a table (SE16). However the same role when moved to P system has some issues. The change access has disappeared. When I go to SE16 to make some changes to the table I see that the user can only display.
    Any ideas on this will be greatly appreciated.
    ravi

    as the 'old' basis guy, may i suggest to refrain from authorizing SE16(N) at all (at least not so widely spread). this may turn out to be a real performance-killer as users always try to Excel-Download the biggest tables available (BSEG, ESSL, MSEG ... you name them)
    use SM30 for customizing tables if in need, better still: create a maintenance-view with its own transaction attached for the tables that need viewing (or maintenance).
    for database-tables authorize SQVI if in need or SQ01 and make sure you teach your users well. both tx. have the (assuredly small) advantage that there's coding generated that will take to existing indices (if available). one cannot say that of SE16.
    for all others goes what Auke says. do not attempt to change data on db-tables manually, except your are VERY sure of what you are doing. i haven't seen a lot of that though.

  • Roles with Change Access to Table Maintenance

    Hello,
    We have many roles that have S_TABU_DIS-Table Maintenance, 02-Change access, *-Auth. Group. Many of these roles have very few transactions and are not Basis\Development related. My questions are what transactions do I need to make sure these roles don't have to so they can't change data in Tables? I know SM30 and SE16, any others? Also second question, should I be worried if these roles do not have the access to start these transactions but do have the access given in the S_TABU_DIS object?
    Thank You,
    Alex

    1. Asides from SM30 and SE16 you already mentioned, 'SE16N' and 'N' come to mind. Maybe there are others.
    2. Yes. You should be worried. Users could get authorizations for any of the aforementioned transactions from another role and get authorization to change all the tables from this role. Bad Stuff.
    I suggest that you figure out why exactly these roles includes S_TABU_DIS object with change authorizations for all table groups. Once you have that figured out - you can take appropriate actions. In my mind, it would be very hard to justify having S_TABU_DIS with 02/* in any role.

  • Allowing only 'display' & no 'change' access within J2EE

    Hi Experts
    We're on EP 6.0 -SP11 WAS 6.40. We've only installed the Java stack & we use the ABAP as the UME data source. All the id's in the ABAP system appear at the J2EE level, For our J2EE administartion for using tools like the Visual Administrator we use the J2EE Administrator id J2EE_ADM_EPP(id created in ABAP before we started the WAS installation), this id allows change as well as display access in the J2EE, for the standalone log viewer also we use this id to connect from our client PC's.
    1. I want to know if there is a way by which we can connect to the J2EE using an id which is only allowed 'display' access & no 'change' access. This is to allow passing some J2EE administration functionality to some persons whom we don't to make any changes.
    2. For using the stand-alone log viewer can we connect using any J2EE id, which is not given the 'administrator' role within J2EE engine.
    Thanks & Rgds,
    Abhishek

    data: cursorfield(20).
    if sy-tcode = 'MM02'.
      get cursor field cursorfield.
      if cursorfield = 'MARA-BISMT'.
        authority-check object 'ZMDOLDMAT' id 'BISMT' field input
                                           id 'ACTVT' field input.
        if sy-subrc = 0.
          exit.
        else.
          message e009(zmd) with
           'You dont have authorization to change' 'OLD MATERIAL NUMBER'.
        endif.
      endif.
    else.
      exit.
    endif.
    I am using the above code.. its working fine for my purpose but when they dont want to change the value of BISMT then its blanking out the value on the screen..
    Any idea why its happening ??
    thank you,
    Suresh

  • Change access request email

    Hello, 
    By default the change access request email is set to [email protected]
    We want to change that to our own email, for obvious reasons. So we use this piece of powershell:
    $webapp = Get-SPWebApplication "http://sharepointtest"
    $currentEmail = "[email protected]";
    $newEmail = "[email protected]";
    foreach($site in $webapp.Sites)
    foreach($web in $site.AllWebs)
    $url = $web.url
    Write-host $url
    if (!$web.HasUniquePerm)
    Write-Host "Access Request Settings is inherted from parent."
    elseif($web.RequestAccessEnabled)
    Write-Host "Access Request Settings is enabled."
    write-host $web.RequestAccessEmail
    if ($web.RequestAccessEmail -eq $currentEmail)
    Write-Host "Email needs to be updated."
    $web.RequestAccessEmail = $newEmail
    $web.Update()
    Write-Host "Email changed successfully!"
    else
    Write-Host "Access Request Settings not enabled."
    However in order for this to work... under our web application, SharePoint - 80 under user permissions we have to have "Manage Permissions" (under site permissions) checked. However in our environment we DO NOT want that checked! Without this step
    power shell errors with access denied.
    Unless there is an easier way of doing this what I would like to do is automate the checking of that box to go before my script and the unchecking of that box after the above script runs. However I do not possess the knowledge to do that. 
    Requesting help, if someone knows the code? OR an alternative easier way of changing the default email. 

    Hello Yes I did get it working. 
    However a small issue occurs. Once you run this and have someone access site, they should get the page that has them type in why they want access to the site. 
    The first time someone goes to the link to do this, there is a 403 Forbidden error, once you submitted the details describing why you need access. IF you refresh you will then see the access request page again BUT it will show what you previously typed.
    HOWEVER, that doesn't get sent out in an email, you must insert another block of text into the access request field then click submit, which then sends out an email.
    Hope that makes sense, and if anyone knows why it does that?
    Here is the code:
    Add-PSSnapin -name "Microsoft.SharePoint.PowerShell"
    $webApp = Get-SPWebApplication -Identity http://sharepointtest/
    #if enable: $true;
    #if disable: $false;
    $allowManagePermissions = $true
    $newPermissions=$null
    if ($allowManagePermissions)
    $newPermissions=[Microsoft.SharePoint.SPBasePermissions]($webApp.RightsMask -bor [Microsoft.SharePoint.SPBasePermissions]::ManagePermissions)
    else
    $newPermissions=[Microsoft.SharePoint.SPBasePermissions]($webApp.RightsMask -band [System.Int64](-bnot ([System.Int64][Microsoft.SharePoint.SPBasePermissions]::EmptyMask -bor [System.Int64][Microsoft.SharePoint.SPBasePermissions]::ManagePermissions)))
    $webApp.RightsMask = $newPermissions
    $webApp.Update()
    Start-Sleep -s 05
    $webapp = Get-SPWebApplication "http://sharepointtest"
    $currentEmail = "[email protected]";
    $newEmail = "The email you want to change to";
    foreach($site in $webapp.Sites)
    foreach($web in $site.AllWebs)
    $url = $web.url
    Write-host $url
    if (!$web.HasUniquePerm)
    Write-Host "Access Request Settings is inherted from parent."
    elseif($web.RequestAccessEnabled)
    Write-Host "Access Request Settings is enabled."
    write-host $web.RequestAccessEmail
    if ($web.RequestAccessEmail -eq $currentEmail)
    Write-Host "Email needs to be updated."
    $web.RequestAccessEmail = $newEmail
    $web.Update()
    Write-Host "Email changed successfully!"
    else
    Write-Host "Access Request Settings not enabled."
    Start-Sleep -s 05
    $webApp = Get-SPWebApplication -Identity http://sharepointtest/
    #if enable: $true;
    #if disable: $false;
    $allowManagePermissions = $false
    $newPermissions=$null
    if ($allowManagePermissions)
    $newPermissions=[Microsoft.SharePoint.SPBasePermissions]($webApp.RightsMask -bor [Microsoft.SharePoint.SPBasePermissions]::ManagePermissions)
    else
    $newPermissions=[Microsoft.SharePoint.SPBasePermissions]($webApp.RightsMask -band [System.Int64](-bnot ([System.Int64][Microsoft.SharePoint.SPBasePermissions]::EmptyMask -bor [System.Int64][Microsoft.SharePoint.SPBasePermissions]::ManagePermissions)))
    $webApp.RightsMask = $newPermissions
    $webApp.Update()

  • UCCX 7.0 Supervisor web access for Skills

    Hi everyone,
      We have a UCCX 7.0 installation and the Supervisors are able to assign skills to various agents.  However, they would like the ability to view all agents assigned to a specific skill.  If I login as an administrator, I able to view thie information under RMCM, and then under SKILLS, however, the supervisor are not able to view this.  Is there a way to allow them to view this information without give their accounts administrative access?
    Regards,
    Bill Hendrix

    Hi Bill
    I don't believe there's a way out of the box... but since the data is stored in the db_cra SQL database, you could throw together a custom report that you could deploy in HRC to pull this info...
    Aaron

  • UCCX Script Application 8.5 to allow Supervisor to change TOD

    Looking for a script application where Supervisor can call in and change TOD remotely.  Anybody have anything out there for this.
    UCCX 8.5
    thanks

    Hi
    You just need to store your opening/closing times in an XML document.
    That way your live script can read the times and compare, and you would want a seperate management script that replaces that XML using a template file, a transform xml step, and an upload doc step.
    Aaron

  • UCCX 5/7 or 8 - Database access - How does the UCCX engine use the DB connection

    I was asked the following question by a customer:
    /* Style Definitions */
    table.MsoNormalTable
    {mso-style-name:"Table Normal";
    mso-tstyle-rowband-size:0;
    mso-tstyle-colband-size:0;
    mso-style-noshow:yes;
    mso-style-priority:99;
    mso-style-qformat:yes;
    mso-style-parent:"";
    mso-padding-alt:0in 5.4pt 0in 5.4pt;
    mso-para-margin:0in;
    mso-para-margin-bottom:.0001pt;
    mso-pagination:widow-orphan;
    font-size:11.0pt;
    font-family:"Calibri","sans-serif";
    mso-ascii-font-family:Calibri;
    mso-ascii-theme-font:minor-latin;
    mso-fareast-font-family:Calibri;
    mso-fareast-theme-font:minor-latin;
    mso-hansi-font-family:Calibri;
    mso-hansi-theme-font:minor-latin;
    mso-bidi-font-family:"Times New Roman";
    mso-bidi-theme-font:minor-bidi;}
    "How does UCCX manage it’s database connections – a connection pool manager / single connection / single connection for each call"
    Does anyone actually know ?  Is it documented anywhere?
    Based on how the steps work I'd guess that the UCCX engine makes a new single DB connection each time the DB step reaches out the DB for a read/write. I assume it would do this independently for every instance of a script running.  Hence the importance of the DB release step I'm guessing.
    I know in the DB subsystem you can configure the maximum number of DB connections to be used but this doesn't imply how they are used.
    I'm not a DB guy, but I think the concern stems from the potential load on a DB server with the constant opening and closing of the DB connections.  I'm assuming that if it used a connection pool the UCCX engine would open, and keep open, a group of DB connections to be used by the UCCX engine. This would lessen the load on the DB server I'm assuming.
    Is there any fundamental difference with UCCX 8 and the DB access ?  It obviously not ODBC anymore.  It JDBC right ? But again how does the UCCX engine use the DB connection?

    To my knowledge, this is not documented; however, at least through 7.0 the MIVR subsystem will open a pool of ODBC connections equal to the maximum you defined and keep them open. If you set it to 50, you will see 50 open connections on the SQL server. Each script that is triggered will attach to one of the available connections as soon as you use a DB-related step and keep it until you use a DB Release step. Once that script instance releases it, the connection is available for another script.
    The behavior should not change with 8.0 as it is the same MIVR subsystem that is doing the work. My first CCX 8.0 project that needs database integration is still about 30 days away so I can't guarantee that though.

  • How to change access path for 'where' clause by using HINTS?

    I searched a loooot of posts and haven't found a solution for my case. I don't even know whether it is possible or not. Is it possible to change the sequence of Oracle "Predicate Information"?
    Here is my SQL and Oracle's execution plan.
      SELECT Max(logId) AS logId FROM online_users_t
      WHERE online_users_date >= to_date('2011-09-19 10:00:00') - 3.2 AND online_users_date <= to_date('2011-09-19 10:00:00') AND online_users_result in (1, -1)
      GROUP BY online_users_user
    | Id  | Operation                    | Name               | Rows  | Bytes | Cost (%CPU)| Time     |
    |   0 | SELECT STATEMENT             |                    | 24800 |   629K|  1336   (1)| 00:00:17 |
    |   1 |  HASH GROUP BY               |                    | 24800 |   629K|  1336   (1)| 00:00:17 |
    |*  2 |   TABLE ACCESS BY INDEX ROWID| ONLINE_USERS_T     | 38833 |   985K|  1334   (1)| 00:00:17 |
    |*  3 |    INDEX RANGE SCAN          | ONLINE_USERS_T_IDX |   116K|       |   313   (1)| 00:00:04 |
    Predicate Information (identified by operation id):
       2 - filter("ONLINE_USERS_RESULT"=(-1) OR "ONLINE_USERS_RESULT"=1)
       3 - access("ONLINE_USERS_DATE">=TO_DATE(' 2011-09-16 05:12:00', 'syyyy-mm-dd
                  hh24:mi:ss') AND "ONLINE_USERS_DATE"<=TO_DATE(' 2011-09-19 10:00:00', 'syyyy-mm-dd
                  hh24:mi:ss'))I have 2 conditions in my 'where' clause, one is date range and the other is 'online_users_result in (1, -1)'. It seems that Oracle filter the table by using 'online_users_result in (1, -1)' first, then access it through date range.
    What I want to do is firstly filtering the table by using date range followed by other things. How can I do it?
    Any clue or help would be highly appreciated.
    Thanks in advance.

    It seems that Oracle filter the table by using 'online_users_result in (1, -1)' first, then access it through date range. No it's not.
    What I want to do is firstly filtering the table by using date range followed by other things. How can I do it?That's precisely what it's doing now.
    It is using the T_IDX index to quickly find all rows that satisfy the range predicate on the date column.
    And then filter those rows to only retrieve the ones that satisfy the other predicate (... in (1,-1)).

  • How to change Access Mode of HANA Stored procedure

    Hi,
    When you are creating a stored procedure as design time object, one of the option is access mode (either read only or read/write).
    I understand read only is default setting in HANA DB, and unless you explicitly change the setting you cannot read/write using stored procedure.
    My question is, is there way to change this setting, so I have option to choose either read or read/write when I create a stored proc?
    Thank you.
    Hyun

    Hi Hyun,
    Please have a look on this thread:
    Create local temporary table in procedure
    You have to enable sqlscript_mode to UNSECURE as mentioned by lars.
    Then depending on whether you are specifiying "READS SQL DATA" it will act as a READ procedure else as a WRITE procedure.
    Regards,
    Krishna Tangudu

Maybe you are looking for

  • Problem displaying CheckboxGroup on JFrame

    I was recently assigned the task of creating exams. I am trying to create a CheckboxGroup in a class that was passed the Graphics2D tool. This code compiles with no errors when I call it's method: setLayout(new GridLayout(1, 5));           CheckboxGr

  • How to prevent pop-up Messages on receiving?

    Dear guys, how can I prevent Message to pop-up if it gets a message? I didn't want to disable the programm, just to brief me like Mail if I receive a message. Thanks.

  • WCS 7.0.240.0 data export to Prime 1.2.1.012 ... HELP!!

    Hello Fellow Engineers, I'm trying to migrate old data from WCS 7.0 to Prime 1.2 ... I have already created the zip file from WCS and imported it into the defaultRepo on Prime.  I see it in the directory when I do a show repository defaultRepo so I h

  • Can we *_PLEASE_* have a .sig for Oracle forums?

    I have requested this before and I will go on doing so (every year, I suppose) until the people at Oracle listen. Why - OH WHY* can we not have a 5 line .sig for our posts to this forum? I am blue in the face from trying to tell people to put Softwar

  • My mac don't detect phone torch 9800

    need help with back berry torch 9800 to be recognize but my mac need to now if i need antivirus for my blackberry torch