Deleting database objects of users and groups

On the Delete Users and Groups Data tab, you can select and validate users and groups. The statuses of the users and groups are determined by the validation. On the basis of the resulting Validation Status, you decide, which authorization objects (users or groups) and data objects that are linked to an authorization object, must be removed from the data component of the repository.

Note: Because of the division into User Management and data component in a repository database, objects such as users and groups also exist in the data component. These objects are named authorization objects. If an authorization object and a corresponding user or a group in the currently used User Management have identical names, the authorization object and the related user- and group-specific settings, role assignments, permissions, and report catalogs are visible in the repository database and can be managed. If the user or the group is not available, the authorization object and the linked data objects are not visible and cannot be managed, although these objects still exist in the repository database.

Select a user or a group (multiple selection possible) and click the Validate selected elements button, to validate the user or the group. If you validate a user or a group, the status of this user or group is determined and shown in the Validation Status column:

Validation Status Description
Unknown This is the default status before you perform the validation. The validation of a user or a group effects that the provider of their authentication types is checked. For performance reasons, the status check must be started manually.
Valid The authentication object is available and is assigned to the repository.
Invalid The authentication object is available and is not assigned to the repository. For example, users or groups were removed from the User Management of the repository. Check, which of the assigned data objects can be deleted.
Inactive The authentication object is not available and is assigned to the repository. For example, users or groups were removed from the Windows Active Directory. Check, which of the assigned data objects can be deleted.
Not Available The authentication object is not available and is not assigned to the repository. For example, users or groups were removed from the Windows Active Directory and the User Management of the Repository. The assigned data objects can be deleted.
Error An error occurred while determining the validation status.

Additionally, after the validation the Direct Registration column shows how users and groups are registered in Repository:

Registration Description
1 The user is registered directly in Repository.
0 The user is registered indirectly in Repository by a group.
- The authentication object is a group.

When the status of the user or group is determined by the validation, these options are available to remove authorization objects (users or groups) and data objects that are linked to the authorization objects from the data component of the repository:

Option Description
Delete authorization object Select this check box, to completely remove the authorization object and the related data objects from the data component of the repository. The data objects that reference the authorization object are automatically selected when you select this option.
Delete preferred role assignments

Select this check box, to remove the preferred role assignments of users and groups. Preferred roles can be assigned manually to users of Infor BI Office Plus and Infor BI Application Studio in two ways:

  • In the Settings of the Report Catalog the preferred role is selected from the Inherit from role drop-down list on the User tab.
  • In the Report Catalog Permission Management the preferred role is selected from the ’Inherit from Role’ Settings drop-down list on the Users and Groups tab.

You can remove preferred role assignments without deleting the other defined role assignments of users and groups.

For more details on preferred roles, see this topic:

Preferred roles and role ranking

Delete role assignments Select this check box, to remove the role assignments of users and groups. These role assignments are defined in the Project Permission Management, in the Report Catalog Permission Management, and in the OLAP Permission Management.
Delete project/report catalog user settings Select this check box, to remove the user-specific settings on project/report catalog level.
Delete permissions on report/folder level Select this check box, to remove the permissions on report/folder level.
Delete settings on report/folder level Select this check box, to remove the user-specific settings on report/folder level.
Delete values of the project variable Select this check box, to remove the defined values of the project variables. These are the user-specific values of the global variables in Infor BI Application Studio.
Delete global role assignments Select this check box, to remove the global role assignments of users and groups. Global role assignments are defined in the Repository Permission Management.
Delete alias settings Select this check box, to remove the user- or role-specific database aliases settings for users of Infor BI Application Studio and Infor BI Office Plus on the project level. Users who work with the report catalogs of Infor BI Application Studio or Infor BI Office Plus, use database aliases to connect to databases.

To delete an authorization object (users or groups) and data objects that are linked to the authorization object, select the object and click the Execute delete operations on selected elements button.

Click the Refresh button, to refresh the view.