Security concern with Dashboard Common functions, Universal Function Type Completed

Chris Best

Hi Boyum team,

Universal functions do not have an ability to restrict by user. The new Dashboard common functions allow users to run any universal function and the SQL Reports allow a user to also select any SQL Report type function.

 

How do we restrict access to sensitive UFs?

 

Chris

Comments

3 comments

  • Comment author
    Rasmus Jensen
    • Official comment

    Hi Chris

    It is not something we had considered, but I can see the issue you describe.

    I think the best way is to implement it into the SAP Authorization tree like similar to this one:

    As of this writing we are make the final things for B1UP 2017.10 version so it is a bit unsure if we can find the resources to add it to this version or we first can have it part of B1UP2017.11 version (or a hotfix in between)

  • Comment author
    Rasmus Jensen

    Update: It just made it into the code before we are to build the new release so expect this to be in the permission tree in B1UP 2017.10 :-)

    0
  • Comment author
    Chris Best

    Thank you Rasmus!


    Chris

    0

Please sign in to leave a comment.