LS9 File Security

 1 Replies
 0 Subscribed to this topic
 15 Subscribed to this forum
Sort:
Author
Messages
Bob S
New Member
Posts: 1
New Member
    In order to use forms we need to provide access to the files obviously.  Our initial idea was to provide all files needed for the area the user was in (HR needs HR, BN, PR,PA, etc).  The issue is that we have quite a few users with add-ins.  Are we opening ourselves to issues with Add-in queries allowing indirect access to data we might want secured?  The upload wizard uses the forms that the user is restricted to, but query seems to provide access to any file they have access to.

    I guess my question here is what is the "best practice" for securing files.  Do most just provide all file access by subject area?  Training suggested HRALL, BNALL etc file access, but I want ot make sure that is the best way to handle this.
    Carl.Seay
    Veteran Member
    Posts: 109
    Veteran Member
      Add-Ins Upload uses AGS calls, which would use Form security. Ass-Ins Query uses DME calls, which uses File security. I've seen many clients exclude/deny access to key fields in file security. For example, deny access to Fica-Nbr (SSN) in Employee table. This also helps limit fields in Drill Around.