Client Access Center and Web PresentationCenter - Security Best Practices
By Terri Schnoering
Security Best Practices was developed based on three essential pillars: object design, implementation and maintenance. Security is a process, not a product. The establishment and control of security is an important element of Precision.BI. The security model provides flexible means for assuring the confidentiality of your data, as well as controlling the function and integrity of Precision.BI.
Rather than controlling security for a specific individual, Best Practices’ recommended guidelines suggest establishing security for groups. When a new user is created and assigned to a group, that user assumes all rights held by the group.
1. Save dedicated copies of objects and searches to be used exclusively for the Access Center to limit the possibility that someone will inadvertently change an object.
2. Create an Object Management category for each PresentationCenter and store all objects in that category.
3. Create a security group in Group Management for each Access Center.
4. Add Precision Access Center in Group Forms. (For
version 4, not applicable for web Access Centers).
5. Add the associated objects and searches for that Access Center into the Group Objects. (For version 4, not applicable for web Access Centers).
6. Set the security level for the objects to ‘View’ or ‘View and Modify’ to prevent the objects from being accidentally overridden.
Hint: If you’ve categorized your Access Center or PresentationCenter objects into specific Object Management categories, when it’s time to add security, use “Filter by Category” to locate them easily.
7. Highlight selected user(s) and add to the Access Center security group(s).
If further security is needed (such as limiting users by department or company), create a separate Security Group and secure that group by using Group Values. Placing the user(s) in both the Access Center Security Group and the dimension Security Group will allow them to see the access center and have their dimension security applied.