User roles

Hello guys,.
I created an application which is supposed to consist of several user interfaces (for example, a company with several departments). My question is how can I implement a feature that provides the user connected only with all of the linked pages to his Ministry and not allowing access to the rest of the application.
Any ideas are appreciated.

Kind regards!

MegaToss wrote:

Would it be possible that I have create user groups and then on the index of page to make only the tabs to specific submenus as the user and his group.

You will need to provide clarification on that. What is an "index page"? Try to use a more precise terminology specific to APEX: there are several ways that the menus can be created in the APEX.

The authorisation schemes must be applied to all pages and you need to control access to components and navigation elements that lead. So if only HR users can access the HR and information pages, HR authorization scheme is applied to all HR pages; all the tabs and the list items that link to these pages; all the columns on the reports that the link to these pages or display privilege information HR; parts of HR on other pages (for example, the HR report on a dashboard home page)...

You can't just apply the permission on the main navigation on the home page. Users can work around this by entering a page number in a URL. Doing the opposite and applying only authorization pages create a poor as user experience then you show the user a large number of navigation items that would simply lead to an error message when you click.

Authorisation schemes should apply uniformly to all levels of the application.

Tags: Database

Similar Questions

  • Management of more than 20 user roles.

    Hello

    JDeveloper 11 g.

    So far, we have managed with the rendered user roles / disabled = ' #{bean.userRight!» = 'U' or bean.userRight == ' {' etc...}.

    However, we want to introduce several user roles, because we have different customers, and they have different types of users as well.  Adding the letters more will make the huge EL expressions.

    I am familiar with user roles made with the safety of the ADF. However, I see the same problem with them. (It becomes difficult to apply when there are more than several users).

    It is possible to make a table a lot to many users and rights. For each user, there will be a list of rights. However having "#{userBean.right == 100}" is not readable.

    Any suggestions?

    Kind regards

    Pamela.

    Rather than use an EL you can point to a bean method and calculate the value of the bean method, returning ture or false according to the connected user.

    Timo

  • ViewObject where Clause SET based on logged in user roles

    Hello Experts

    I have a view object based on a custom query to get distinct values from a table. My requirement is to display the results as a listview. The listview is is filled without any problem. But I need to add a where clause clause the object view based on the user roles.

    I have a method that generates the where clause and returns one string something like "COUNTRIES ('USA', 'UK').

    I created a class of the view object Impl and put WhereClause as below: but where clause is not applied when I run the page. I see everywhere instead of just USA & UK.

    Can you let me know at what time should I set the where the clause?

    SerializableAttribute public class CountriesVOImpl extends ViewObjectImpl {}

    /**

    * This is the default constructor (do not remove).

    */

    public CountriesVOImpl () {}

    this.setWhereClause (getCountries ());

    }

    public String getCountries() {}

    return '('USA', 'UK') COUNTRIES. "

    }

    }

    In class ViewImpl try to replace "executeQueryForCollection" and setWhereClause in this function as:

        protected void executeQueryForCollection(Object object, Object[] object2, int i)
        {
            setWhereClause("COUNTRY in ('USA','UK')");
            super.executeQueryForCollection(object, object2, i);
        }
    
  • The worksheet name change for the interactive user role

    Hi all

    I have a question about DRM security for users with access add to the sheet and only read access to the members. The requirement is that the user should be able to add a sheet and change all the properties associated with the leaves but cannot add or change the Member or any property associated with a branch. To do this, I created a group of node (NAG1) and assigned categories of goods (PC1) associated with the hierarchy of the NAG1 with editing access to PC1. The NAG1 for journal access ADD and NAG1 for branch had read access. The user has only one role which is the interactive user. This way, the user cannot add spreadsheets, edit the properties associated with the leaves, but don't can't add limb or change all the properties associated with limb, HOWEVER, the user is not able to change the name of an existing journal. If I give the user role 'Director of Application', while they are able to change the name of the system, but then they see the section Administration on the left and everything related which we want give...

    Is it possible to give the user the ability to change the name of the worksheet without giving ""Application Administrator ' role? "

    Denzz Murali Pasumarti

    Thanks in advance

    Sumit

    Have you checked RenameLeaf and RenameLimb system preferences?  I think that by default, only the administrator can change the name of the node, but you can grant this possibility of additional roles.

  • Hide a metadata profile based on the user role.

    Hi all

    I need to hide a metadata profile (log, update) based on the user role page. I have added metadata to a rule like "change" and added the rule to the profile. Now I want the metadata submitted must be visible for couple of user roles (admin, contributor) and it should be hidden for other user roles. How to achieve this?

    The content Server: 11.1.1.8

    Thank you

    Maury

    (1) create a rule that allows you to hide the metadata for all roles

    (2) create a new one which will show use the condition of activation of rule with building userHasRole("contributor")

  • What opening of database Service of Cloud Computing console receiveing "the user role cannot access the Cloud database Service" message and see no service. Why?

    What opening of database Service of Cloud Computing console receiveing "the user role cannot access the Cloud database Service" message and see no service. Why?

    Thank you in advance.

    Try now

  • What is the difference between the role of support and the user role in the business group?

    I know there are a few differences between the role of support and the user role in the business as business group elements and Management group

    editable settings . But I can't find any document that introduces more precisely what they can do, what they can't.

    Are there any articles or documents or other means that can tell the specific differences between the Director, support and user group?

    If you have not taken a glance at this map permissions by GrantOrchard you should. It is very useful to know what permissions each user role. The big difference between the role of support and the user is that the user can only do things for themselves and user support can do things on behalf of other users. There is nothing quite as granular as you specified.

  • API for Virtual Private Cloud user roles

    Hi guys,.

    About vCloud Air Documentation Center documentation, I see only "Virtual infrastructure" administrator and "End user" roles create and manage virtual machines. The role of "Accounting officer" description is «...» Account administrators can also view virtual data centers, virtual machines, gateways, network and activity logs... «, on this sentence, I understand that "account administrator" NOT able to create virtual machines and can DISPLAY its settings, but I was able to create a virtual machine using API by the user with the role of "Accounting officer".» Someone please clarify the responsibilities of roles?

    Hello

    Thanks for that bring to our attention. Slightly changed role definitions and I'll have my Tech writers look more closely at this.

    I understand also that the account managers are 'super admins' with all the capabilities.

    Jenny

  • VCAC 6.0, I can't add a USER to the AD Group to a company includes the user role

    IF I goto to MODIFY an existing group of companies, I can not ad any group Active Directory the "USER ROLE" on the bottom of the page, I'm not sure what I am doing wrong

    in the attachment, I try to FIND ad GROUPS, I see the users but not groups

    Thank you!

    Post edited by: quantum_2

    "" Message edited by: quantum_2 I also have the same problem with the "Group Manager ROLE" and the "support role" I can't announces an ad GROUP

    He can not see the group - I think that it is a known problem, type the name of the Group anyway, and press ENTER.  vCAC will throw an error if it does not recognize the name of the group.  vCAC didn't need to 'find' the name of the group to accept it.

  • Question: New user roles between Versions

    Is there any place besides the Administrator's Guide, where new user roles are listed in the annex.  I would be very happy to see a list of only the new roles available to a major version major version in the notes version or any other documentation.  Is there a way to avoid splashing and comparing list of text to the text list of the entire list of the roles of the Administrator's guide?

    We try to document all the new roles of the user in the Notes of explanation around them.  These items are usually marked with 'Necessary preliminary work' then you can quickly analyze the release notes to find them or search "[]".   PQM is available in point 6.1.1 and it includes a lot of new roles. PQM roles are documented in the Administrator's guide.

    If you want a faster way and more accurate to compare, you can get a quick list of all roles available in just looking at the roles table in the database and that comparing to the previous version.   "Select * from roles.

    Hope this helps

    Kelly

  • Export / import tablespace with all objects (data, users, roles)

    Hi, I have a problem or a question to the export of the section / import tablespace.

    On the one hand, I have a database 10g (A) and on the other hand, an 11g database (B).

    At there is a tablespace called PRO.

    Also 3 users:

    PRO_Main - contains the datas - space PRO

    PRO_Users1 with a PRO_UROLE - professional role

    PRO_Users2 with a PRO_UROLE - professional role

    Now, I want to transfer the tablespace set PRO (included users PRO_MAIN, PRO_USER1, PRO_User2 and PRO_UROLE role) from A to B.

    On B, I created the user PRO_Main and the tablespace PRO.

    On A, I run suite statement:

    expdp TABLESPACES PRO_Main/XXX DIRECTORY PRO = DUMPFILE TSpro.dmp LOGFILE = backup_datapump = = TSpro.log

    B:

    Impdp TABLESPACES PRO_Main/XXX DIRECTORY PRO = DUMPFILE TSpro.dmp LOGFILE = backup_datapump = = TSpro.log

    Result:

    The user PRO_Main has been imported with all data.

    But miss me PRO_USER1, PRO_User2 and PRO_UROLE role...


    I guess, I've used wrong settings in my experienced and / or impdp.

    Would be nice, if someone can give me a hint.

    Thanks in advance.

    Best regards
    Frank

    When you perform an export of TABLESPACE mode by simply specifying tablespaces, then everything gets exported are tables and dependent objects. Users, roles, and tablespace definitions themselves don't get exported.

    When you perform a SCHEMA mode export by specifying the schemas, you will get the schema definitions (if the schema running export is privied) and all of the objects that has the schema. The schema is not owner of roles or tablespace definitions.

    In your case, you want to move

    1 patterns - that you have already created 1 on your target database
    2. the roles
    3 all in the storage spaces belonged to several patterns.

    There is not 1 import/export command that will do that. This is how I could do this:

    1. move the schema definitions
    a. you can either create them manually or
    B1. expdp schemas = include = user
    impdp B2 b1 results.

    2 transfer the roles
    complete expdp = include = role...
    don't forget, this will include all the roles. If you want to limit what is exported, use:
    include = role: "in (" ROLE1","ROLE2", etc.).
    impdo roles come to export

    3. move the user information
    a. If you want to move all the objects in the diagram as functions, packages, etc., then you need to use a schema view
    Export
    patterns of username/password expdp = a, b, c...
    b. If you want to move only the objects in these storage spaces, and then use the export of tablespace
    expdp username/password = tbs1 storage spaces, tbs2,...

    c. import the dumpfile generated in step 3
    Impdp username/password...

    I hope this helps.

    Dean

  • GRANT SELECT on a table to the user / role changes for the tab last_DDL

    Hello

    Is grant select (or any private object) to the user/role a DDL statement?

    GRANT SELECT on a table to the user / role changes the last_DDL to the table.
    1 > is this expected behavior?
    2 > no way in which we can grant select on a table by another user, without changing the DDL? (for example create view).


    The test is performed:

    Prior to the issuance:


    OBJECT_NAME CREATED TIMESTAMP LAST_DDL_TIME OWNER
    ------- ---------------------- ---------- ------------- --------------------
    AR HZ_CUSTOMER_PROFILES 8 MAY 00 13 MARCH 13 2003-06 - 26:12:41:29



    Grant statement:
    GRANT SELECT ON "AR". "' HZ_CUSTOMER_PROFILES ' TO 'AR_VIEW ';

    Note: AR_VIEW is a role, I tried granting also directly to the user.


    After the grant:

    OBJECT_NAME CREATED TIMESTAMP LAST_DDL_TIME OWNER
    ------- ---------------------- ---------- ------------- --------------------
    AR HZ_CUSTOMER_PROFILES 8 MAY 00 21 MARCH 13 2003-06 - 26:12:41:29



    Old thread, discuss whether Grant is DDL or not, but no documented conclusions.
    ( Re: Grant, revoke is DDL and DCL? )

    Please help in the assessment above.

    -Best regards,.
    Mani

    It's the DOF.

    After all, this isn't DML, it implicitly committed and you cannot use it directly in PL/SQL: features of DDL. :-)

  • missing user roles

    After a change, I did in the role of the user via the site settings (the right to change user roles), they disappeared not only for my client, but for me as well. Is there a way back?

    Thanks for any ideas

    Hello

    Could you please check it now and let me know if it works.

  • Import only the users/roles

    Hello
    for testing purposes, I imported to fullexport.dmp; Only two users with their objects.
    Now, I would import all the remaining users + roles from the same file fullexport.dmp and roles.
    What is the best way to do this, I think that the first users should be imported only roles but I don't know how to do this?


    Thank you

    Thank you!

  • custom user roles

    Hello

    Is there an example or docs how to create and use custom user roles?

    Roles by default, the Viewer, the editor and the owner are insufficient to my application.

    Are the roles just a number between 0 and 100, can I use when generating a token with php and update permissions in the console of the room?

    Is there some more adjustments?

    I read the docs, but it does not explain how to create and use new roles:

    http://learn.Adobe.com/wiki/display/LCCs/3.1.4+UserRoles

    Thank you

    You're right, that a role is any number that you'd like to - you do not have

    create something new. You can then add custom publishModel and accessModel

    values to your nodes to fit your custom roles.

    Nigel

  • Set the Dynamic Menu based on the opening of session/user role

    Hi all

    Can someone help me to define the Dynamic Menu based on logon user/role? I have several menu and I want to change the menu primary logon user or role-based.
    How can I do this?


    Arif

    Hello

    try to use replace_menu, see form builder help

    New_block_instance trigger, you can write

    replace_menu ("C:------...-.mmx'");

Maybe you are looking for

  • 490 EVENT ID

    In the event log, I noticed a few errors for ESENT: Event type: errorEvent source: ESENTEvent category: generalEvent ID: 490Date: 12/03/2010Time: 23:03:01User: n/aComputer: NAUJASDescription:Svchost (1176) an attempt to open the file "C:\WINDOWS\syst

  • Is on line 1 issue stack overflow?

    One of my addresses, whenever I open it, I get this message.  Any help appreciated

  • CALLBACK functions in cvi

    Hello Need a simple clarification on the use of the callback function. I have 3 function keys different as reminder starting test, brake test, quit smoking. Whenever the start test button is pressed by EVENT_COMMIT, he asked some functions and perfor

  • How do I change the orientation office of the fashion landscape to portrait?

    original title: landscape or Portrait mode I am running Windows Vista with a Dell monitor.  Once I've accidentally hit a key or combination of keys to change my mode screen landscape to portrait mode.  I went online and find keys to switch back.  Now

  • Parental controls from block - how to reset the DB?

    Windows Vista parental controls was works very well for two years, then for all of my children's accounts, he began to block anything that was not on the green list.  I never checked this option. Need a way to reset the parental controls for each acc