ACL by Object - field descriptions
Overview
Use this page to create access control lists for a specific object. These lists define the level of security that a user, role, or group has to that object.
For example, you can restrict a user, role, or group from accessing a specific item code,
such as 01002 (butter with salt)
. Or, you can grant them different levels
of security access, such as read/copy or read/copy/write/delete.
Main tab
- Object Code
-
Use the
to select a specific object code. For example, if you selectITEM
as the Symbol, then you choose an item code. - Symbol
- Select a symbol, such as
ITEM
, from the list.
The bottom section of the Main tab is used to assign security access control to the object code.
Here, you specify the users, roles, and/or groups that will have security access to that object and the level of access they will have. You can also restrict users, roles, and groups from accessing the object.
Different levels of security access can be assigned for each user, each role, and each group.
After you save your manual entries, they are no longer displayed in the Main tab. They are displayed in the Reports tab.To change an entry after it has been saved, re-enter the information on the Main tab.
You can delete saved entries by assigning the Delete ACL Entry code to the Security column in the Main tab.
- Assignment
-
Identifies how the row was added or changed. Values are:
-
AUTOMATIC
- the row was filled from a workflow script, using theSetSecurityACL ()
function. MANUAL
- the row was entered manually by a user.
-
- Code
-
Shows the name of the user, role, or group to whom you are assigning access control.
For manual assignments, select a code from the list.
- Detail Code
-
Shows a detail code, such as:
Context Attributes
,Sets
, orStatus
.For manual assignments, select a detail code from the list. Select “
All
” if you want to include every detail code. - Security
-
Shows the level of security access assigned to the corresponding user, role, or group.
For manual assignments, the choices are:- Delete ACL Entry
- no access
- reserved for future use
- read/copy
- read/copy/write
- read/copy/write/delete
- User/Role/Group
- For manual assignments, select one of these choices:
USER
ROLE
GROUP
Reports tab
This tab provides a complete list of all security assignments made either manually through
the Main tab or automatically through the running
of a workflow script with the SetSecurityACL ()
function.
-
Once you save your manual entries in the Main tab, they are displayed in the Reports tab only. They are no longer displayed in the Main tab.
-
To add, change, or delete entries, return to the Main tab and make the appropriate updates.