Búsquedas recientes
No hay búsquedas recientes

Sam Turner
Incorporación 05 abr 2024
·
Última actividad 05 abr 2024
Seguimientos
0
Seguidores
0
Actividad total
4
Voto
1
Suscripción
1
RESUMEN DE LA ACTIVIDAD
INSIGNIAS
ARTÍCULOS
PUBLICACIONES
COMENTARIOS DE LA COMUNIDAD
COMENTARIOS DE ARTÍCULOS
RESUMEN DE LA ACTIVIDAD
Última actividad de Sam Turner
Sam Turner creó una publicación,
Note: Include attachments in emails doesn't appear and can't be enabled if secure downloads is enabled. Additionally, when you enable secure downloads, agents can't copy and paste images from their computer into ticket comments.
Whilst I understand why this is in place it does conflict with workflows, for example;
- We have agents wanting to receive and send attachments (sometimes containing sensitive data)
- These attachment recipients should not be logged in nor have an account and should be able to receive the attachments as attachments in an email. The customers are dynamic, can sometimes be a one-time experience and shouldn't rely on them having to create an account to access the data.
- The attachments should only be accessible via logged in Agents (enable secure downloads) and recipients of the emails from the tickets in which they raise (enable email attachments). This scenario removes the ‘Security by Obscurity', of which isn't ‘Secure’, whilst also allowing those customers to access the data truly addressed to them.
Security by obscurity alone is discouraged and not recommended by standards bodies. The National Institute of Standards and Technology (NIST) in the United States recommends against this practice: "System security should not depend on the secrecy of the implementation or its components."[9] The Common Weakness Enumeration project lists "Reliance on Security Through Obscurity" as CWE-656
It would be good to understand if we can be a bit more granular with what ‘Enable Secure Downloads’ affects, having it blanket for both agent and customer side can be counter intuitive and break the experience for the customer.
Publicado 05 abr 2024 · Sam Turner
3
Seguidores
4
Votos
1
Comentario
Sam Turner hizo un comentario,
Note: Include attachments in emails doesn't appear and can't be enabled if secure downloads is enabled. Additionally, when you enable secure downloads, agents can't copy and paste images from their computer into ticket comments.
Whilst I understand why this is in place it does conflict with workflows, for example;
- We have agents wanting to receive and send attachments (sometimes containing sensitive data)
- These attachment recipients should not be logged in nor have an account and should be able to receive the attachments as attachments in an email.
- The attachments should only be accessible via logged in Agents (enable secure downloads) and recipients of the emails from the tickets in which they raise (enable email attachments).
It would be good to understand if we can be a bit more granular with what ‘Enable Secure Downloads’ affects, having it blanket for both agent and customer side can be counter intuitive and break the experience for the customer.
Ver comentario · Publicado 05 abr 2024 · Sam Turner
0
Seguidores
0
Votos
0
Comentarios