doran.george
Staff
Staff
since ‎28-09-22
‎04-09-24

User Statistics

  • 8 Posts
  • 0 Answers
  • 25 Likes given
  • 22 Likes received

User Activity

There are no Resource Access Controls on Chorus Rest API's which provides a greater attack surface for attackers. Resource Access Controls per UserID could be system level or granted by individual Rest API.
The Chorus RENDEZVOUS is a scheduled BATCH process that attempts to link Sources to Transactions.  Sometimes there is a timing issue, and the sources are not available when RENDEZVOUS is running.   Can Chorus be updated to re-attempt to link orphaned...
Drools use in Chorus does not provide an audit trail on which rule used.  One solution would be a baseline audit trail similar to Design Studios Automation Services (Service Tab on 'view history' on a transaction). 
Work Objects in Chorus are created from Portal, REST services, RIP, SRV calls, Web Services, Automation Services, etc.  An work object creation origin field and possible UserID would be helpful for audit purposes.
*** Added 30 day impact because of lack of a 24 hour work window for BATCH UserIDs.                           The CHORUS BPM 'User' Screen allows an 'In By' and 'Out By' time window.  The values can be set to '00:00:00' and '23:59:59' respectively; b...