Question

How to resolve row level security on on access views

  • 11 May 2023
  • 2 replies
  • 131 views

Badge
  • Do Gooder (Customer)
  • 0 replies

Hi ,

IFS recommended to use Access views to export data from IFS Cloud environment hosted by IFS.  The recommended user account is IFSINFO. 

Now the question is, since most data sources have row level security (Company/site/ HR access) some data are not visible to IFSINFO schema user by default. 

What is the recommendation here ? 

Q1.  Should IFSINFO be registered as an employee with supervisor access to fetch all  employee data from access view ?

 

Thanks,

Rohana         


2 replies

Userlevel 4
Badge +12

@ron 

The documentation seems to support that idea, that the user accessing the data needs to have the correct permissions.  But is also says that identical views owned by the IFSINFO user are created for each Access View.  You’d have to take a look at those IFSINFO views and see what the security checks are in those.  It’s been a while, but last time I checked, some of the security clauses for HR and Finance had the option of the user simply having admin rights to see the data.

https://docs.ifs.com/techdocs/22r2/050_reporting/256_br_and_a/050_integrations/080_external_access/010_access_views/010_cremanageaccessviews/#security_remarks

https://docs.ifs.com/techdocs/22r2/050_reporting/256_br_and_a/050_integrations/080_external_access/010_access_views/010_cremanageaccessviews/#technical_remarks

Badge

Hi,

You can use Information Source Full Access page to control/configure row level access grants to the users. 

https://docs.ifs.com/techdocs/22r2/050_reporting/500_information_sources/030_configure_information_sources/015_fullisaccess/

 

IFSINFO user (the user specified in Information Access Layer (IAL) Oracle user system parameter) has the full access granted to that user by default. So if you are using IFSINFO to connect you should see all the data. 

Reply