User roles
Hello guys,.I created an application which is supposed to consist of several user interfaces (for example, a company with several departments). My question is how can I implement a feature that provides the user connected only with all of the linked pages to his Ministry and not allowing access to the rest of the application.
Any ideas are appreciated.
Kind regards!
MegaToss wrote:
Would it be possible that I have create user groups and then on the index of page to make only the tabs to specific submenus as the user and his group.
You will need to provide clarification on that. What is an "index page"? Try to use a more precise terminology specific to APEX: there are several ways that the menus can be created in the APEX.
The authorisation schemes must be applied to all pages and you need to control access to components and navigation elements that lead. So if only HR users can access the HR and information pages, HR authorization scheme is applied to all HR pages; all the tabs and the list items that link to these pages; all the columns on the reports that the link to these pages or display privilege information HR; parts of HR on other pages (for example, the HR report on a dashboard home page)...
You can't just apply the permission on the main navigation on the home page. Users can work around this by entering a page number in a URL. Doing the opposite and applying only authorization pages create a poor as user experience then you show the user a large number of navigation items that would simply lead to an error message when you click.
Authorisation schemes should apply uniformly to all levels of the application.
Tags: Database
Similar Questions
-
Management of more than 20 user roles.
Hello
JDeveloper 11 g.
So far, we have managed with the rendered user roles / disabled = ' #{bean.userRight!» = 'U' or bean.userRight == ' {' etc...}.
However, we want to introduce several user roles, because we have different customers, and they have different types of users as well. Adding the letters more will make the huge EL expressions.
I am familiar with user roles made with the safety of the ADF. However, I see the same problem with them. (It becomes difficult to apply when there are more than several users).
It is possible to make a table a lot to many users and rights. For each user, there will be a list of rights. However having "#{userBean.right == 100}" is not readable.
Any suggestions?
Kind regards
Pamela.
Rather than use an EL you can point to a bean method and calculate the value of the bean method, returning ture or false according to the connected user.
Timo
-
ViewObject where Clause SET based on logged in user roles
Hello Experts
I have a view object based on a custom query to get distinct values from a table. My requirement is to display the results as a listview. The listview is is filled without any problem. But I need to add a where clause clause the object view based on the user roles.
I have a method that generates the where clause and returns one string something like "COUNTRIES ('USA', 'UK').
I created a class of the view object Impl and put WhereClause as below: but where clause is not applied when I run the page. I see everywhere instead of just USA & UK.
Can you let me know at what time should I set the where the clause?
SerializableAttribute public class CountriesVOImpl extends ViewObjectImpl {}
/**
* This is the default constructor (do not remove).
*/
public CountriesVOImpl () {}
this.setWhereClause (getCountries ());
}
public String getCountries() {}
return '('USA', 'UK') COUNTRIES. "
}
}
In class ViewImpl try to replace "executeQueryForCollection" and setWhereClause in this function as:
protected void executeQueryForCollection(Object object, Object[] object2, int i) { setWhereClause("COUNTRY in ('USA','UK')"); super.executeQueryForCollection(object, object2, i); }
-
The worksheet name change for the interactive user role
Hi all
I have a question about DRM security for users with access add to the sheet and only read access to the members. The requirement is that the user should be able to add a sheet and change all the properties associated with the leaves but cannot add or change the Member or any property associated with a branch. To do this, I created a group of node (NAG1) and assigned categories of goods (PC1) associated with the hierarchy of the NAG1 with editing access to PC1. The NAG1 for journal access ADD and NAG1 for branch had read access. The user has only one role which is the interactive user. This way, the user cannot add spreadsheets, edit the properties associated with the leaves, but don't can't add limb or change all the properties associated with limb, HOWEVER, the user is not able to change the name of an existing journal. If I give the user role 'Director of Application', while they are able to change the name of the system, but then they see the section Administration on the left and everything related which we want give...
Is it possible to give the user the ability to change the name of the worksheet without giving ""Application Administrator ' role? "
Thanks in advance
Sumit
Have you checked RenameLeaf and RenameLimb system preferences? I think that by default, only the administrator can change the name of the node, but you can grant this possibility of additional roles.
-
Hide a metadata profile based on the user role.
Hi all
I need to hide a metadata profile (log, update) based on the user role page. I have added metadata to a rule like "change" and added the rule to the profile. Now I want the metadata submitted must be visible for couple of user roles (admin, contributor) and it should be hidden for other user roles. How to achieve this?
The content Server: 11.1.1.8
Thank you
Maury
(1) create a rule that allows you to hide the metadata for all roles
(2) create a new one which will show use the condition of activation of rule with building userHasRole("contributor")
-
What opening of database Service of Cloud Computing console receiveing "the user role cannot access the Cloud database Service" message and see no service. Why?
Thank you in advance.
Try now
-
What is the difference between the role of support and the user role in the business group?
I know there are a few differences between the role of support and the user role in the business as business group elements and Management group
editable settings . But I can't find any document that introduces more precisely what they can do, what they can't.
Are there any articles or documents or other means that can tell the specific differences between the Director, support and user group?
If you have not taken a glance at this map permissions by GrantOrchard you should. It is very useful to know what permissions each user role. The big difference between the role of support and the user is that the user can only do things for themselves and user support can do things on behalf of other users. There is nothing quite as granular as you specified.
-
API for Virtual Private Cloud user roles
Hi guys,.
About vCloud Air Documentation Center documentation, I see only "Virtual infrastructure" administrator and "End user" roles create and manage virtual machines. The role of "Accounting officer" description is «...» Account administrators can also view virtual data centers, virtual machines, gateways, network and activity logs... «, on this sentence, I understand that "account administrator" NOT able to create virtual machines and can DISPLAY its settings, but I was able to create a virtual machine using API by the user with the role of "Accounting officer".» Someone please clarify the responsibilities of roles?
Hello
Thanks for that bring to our attention. Slightly changed role definitions and I'll have my Tech writers look more closely at this.
I understand also that the account managers are 'super admins' with all the capabilities.
Jenny
-
VCAC 6.0, I can't add a USER to the AD Group to a company includes the user role
IF I goto to MODIFY an existing group of companies, I can not ad any group Active Directory the "USER ROLE" on the bottom of the page, I'm not sure what I am doing wrong
in the attachment, I try to FIND ad GROUPS, I see the users but not groups
Thank you!
Post edited by: quantum_2
"" Message edited by: quantum_2 I also have the same problem with the "Group Manager ROLE" and the "support role" I can't announces an ad GROUP
He can not see the group - I think that it is a known problem, type the name of the Group anyway, and press ENTER. vCAC will throw an error if it does not recognize the name of the group. vCAC didn't need to 'find' the name of the group to accept it.
-
Question: New user roles between Versions
Is there any place besides the Administrator's Guide, where new user roles are listed in the annex. I would be very happy to see a list of only the new roles available to a major version major version in the notes version or any other documentation. Is there a way to avoid splashing and comparing list of text to the text list of the entire list of the roles of the Administrator's guide?
We try to document all the new roles of the user in the Notes of explanation around them. These items are usually marked with 'Necessary preliminary work' then you can quickly analyze the release notes to find them or search "[]". PQM is available in point 6.1.1 and it includes a lot of new roles. PQM roles are documented in the Administrator's guide.
If you want a faster way and more accurate to compare, you can get a quick list of all roles available in just looking at the roles table in the database and that comparing to the previous version. "Select * from roles.
Hope this helps
Kelly
-
Export / import tablespace with all objects (data, users, roles)
Hi, I have a problem or a question to the export of the section / import tablespace.
On the one hand, I have a database 10g (A) and on the other hand, an 11g database (B).
At there is a tablespace called PRO.
Also 3 users:
PRO_Main - contains the datas - space PRO
PRO_Users1 with a PRO_UROLE - professional role
PRO_Users2 with a PRO_UROLE - professional role
Now, I want to transfer the tablespace set PRO (included users PRO_MAIN, PRO_USER1, PRO_User2 and PRO_UROLE role) from A to B.
On B, I created the user PRO_Main and the tablespace PRO.
On A, I run suite statement:
expdp TABLESPACES PRO_Main/XXX DIRECTORY PRO = DUMPFILE TSpro.dmp LOGFILE = backup_datapump = = TSpro.log
B:
Impdp TABLESPACES PRO_Main/XXX DIRECTORY PRO = DUMPFILE TSpro.dmp LOGFILE = backup_datapump = = TSpro.log
Result:
The user PRO_Main has been imported with all data.
But miss me PRO_USER1, PRO_User2 and PRO_UROLE role...
I guess, I've used wrong settings in my experienced and / or impdp.
Would be nice, if someone can give me a hint.
Thanks in advance.
Best regards
FrankWhen you perform an export of TABLESPACE mode by simply specifying tablespaces, then everything gets exported are tables and dependent objects. Users, roles, and tablespace definitions themselves don't get exported.
When you perform a SCHEMA mode export by specifying the schemas, you will get the schema definitions (if the schema running export is privied) and all of the objects that has the schema. The schema is not owner of roles or tablespace definitions.
In your case, you want to move
1 patterns - that you have already created 1 on your target database
2. the roles
3 all in the storage spaces belonged to several patterns.There is not 1 import/export command that will do that. This is how I could do this:
1. move the schema definitions
a. you can either create them manually or
B1. expdp schemas =include = user
impdp B2 b1 results.2 transfer the roles
complete expdp = include = role...
don't forget, this will include all the roles. If you want to limit what is exported, use:
include = role: "in (" ROLE1","ROLE2", etc.).
impdo roles come to export3. move the user information
a. If you want to move all the objects in the diagram as functions, packages, etc., then you need to use a schema view
Export
patterns of username/password expdp = a, b, c...
b. If you want to move only the objects in these storage spaces, and then use the export of tablespace
expdp username/password = tbs1 storage spaces, tbs2,...c. import the dumpfile generated in step 3
Impdp username/password...I hope this helps.
Dean
-
GRANT SELECT on a table to the user / role changes for the tab last_DDL
Hello
Is grant select (or any private object) to the user/role a DDL statement?
GRANT SELECT on a table to the user / role changes the last_DDL to the table.
1 > is this expected behavior?
2 > no way in which we can grant select on a table by another user, without changing the DDL? (for example create view).
The test is performed:
Prior to the issuance:
OBJECT_NAME CREATED TIMESTAMP LAST_DDL_TIME OWNER
------- ---------------------- ---------- ------------- --------------------
AR HZ_CUSTOMER_PROFILES 8 MAY 00 13 MARCH 13 2003-06 - 26:12:41:29
Grant statement:
GRANT SELECT ON "AR". "' HZ_CUSTOMER_PROFILES ' TO 'AR_VIEW ';
Note: AR_VIEW is a role, I tried granting also directly to the user.
After the grant:
OBJECT_NAME CREATED TIMESTAMP LAST_DDL_TIME OWNER
------- ---------------------- ---------- ------------- --------------------
AR HZ_CUSTOMER_PROFILES 8 MAY 00 21 MARCH 13 2003-06 - 26:12:41:29
Old thread, discuss whether Grant is DDL or not, but no documented conclusions.
( )
Please help in the assessment above.
-Best regards,.
ManiIt's the DOF.
After all, this isn't DML, it implicitly committed and you cannot use it directly in PL/SQL: features of DDL. :-)
-
After a change, I did in the role of the user via the site settings (the right to change user roles), they disappeared not only for my client, but for me as well. Is there a way back?
Thanks for any ideas
Hello
Could you please check it now and let me know if it works.
-
Import only the users/roles
Hello
for testing purposes, I imported to fullexport.dmp; Only two users with their objects.
Now, I would import all the remaining users + roles from the same file fullexport.dmp and roles.
What is the best way to do this, I think that the first users should be imported only roles but I don't know how to do this?
Thank youThank you!
-
Hello
Is there an example or docs how to create and use custom user roles?
Roles by default, the Viewer, the editor and the owner are insufficient to my application.
Are the roles just a number between 0 and 100, can I use when generating a token with php and update permissions in the console of the room?
Is there some more adjustments?
I read the docs, but it does not explain how to create and use new roles:
http://learn.Adobe.com/wiki/display/LCCs/3.1.4+UserRoles
Thank you
You're right, that a role is any number that you'd like to - you do not have
create something new. You can then add custom publishModel and accessModel
values to your nodes to fit your custom roles.
Nigel
-
Set the Dynamic Menu based on the opening of session/user role
Hi all
Can someone help me to define the Dynamic Menu based on logon user/role? I have several menu and I want to change the menu primary logon user or role-based.
How can I do this?
ArifHello
try to use replace_menu, see form builder help
New_block_instance trigger, you can write
replace_menu ("C:------...-
.mmx'");
Maybe you are looking for
-
In the event log, I noticed a few errors for ESENT: Event type: errorEvent source: ESENTEvent category: generalEvent ID: 490Date: 12/03/2010Time: 23:03:01User: n/aComputer: NAUJASDescription:Svchost (1176) an attempt to open the file "C:\WINDOWS\syst
-
Is on line 1 issue stack overflow?
One of my addresses, whenever I open it, I get this message. Any help appreciated
-
Hello Need a simple clarification on the use of the callback function. I have 3 function keys different as reminder starting test, brake test, quit smoking. Whenever the start test button is pressed by EVENT_COMMIT, he asked some functions and perfor
-
How do I change the orientation office of the fashion landscape to portrait?
original title: landscape or Portrait mode I am running Windows Vista with a Dell monitor. Once I've accidentally hit a key or combination of keys to change my mode screen landscape to portrait mode. I went online and find keys to switch back. Now
-
Parental controls from block - how to reset the DB?
Windows Vista parental controls was works very well for two years, then for all of my children's accounts, he began to block anything that was not on the green list. I never checked this option. Need a way to reset the parental controls for each acc