1.15 Security Issues

1.15.1 Users Are Able to View the Existence of Files and Folders via the Home Folder Interface if Multiple Users Have the Same Home Folder Path

If multiple users in your organization have the same Home folder path (for example, //server/share/data), with file system access rights distinguishing which files and folders users have access to, users have access within Filr to see the personal files and folders of other users. However, users do not have the ability to view the contents of the files and folders that they do not have access rights to.

1.15.2 Logout Does Not Happen When Filr Is Accessed Directly and Is Fronted by Access Manager

When Filr is fronted by NetIQ Access Manager, only the Filr administrator is able to access Filr directly. When Filr is accessed directly in this configuration, simultaneous logout for the Filr system is not successful.

After the Filr administrator logs in directly to Filr (and Filr is configured with Access Manager), all browser sessions should be immediately closed to ensure logout.