24
Informer Security PRESENTER: Tim Nicholson | [email protected] | March 5-6, 2012

Informer Security

  • Upload
    keisha

  • View
    37

  • Download
    3

Embed Size (px)

DESCRIPTION

Informer Security. PRESENTER : Tim Nicholson | [email protected] | March 5-6, 2012. Secure All Areas of Informer Reports Informer-based Native SQL System controls and settings Archives Data sources (databases) Mappings (files/tables) Properties (fields/columns) Export Templates - PowerPoint PPT Presentation

Citation preview

Page 1: Informer Security

Informer Security

PRESENTER: Tim Nicholson | [email protected] | March 5-6, 2012

Page 2: Informer Security

• Secure All Areas of Informer– Reports

• Informer-based

• Native SQL

– System controls and settings

– Archives

– Data sources (databases)

– Mappings (files/tables)

– Properties (fields/columns)

– Export Templates

– Row-level security

– Dashboards

Page 3: Informer Security

• Groups and Users– Local– LDAP– Combination

Page 4: Informer Security

Adding Users

Page 5: Informer Security

Adding Groups

Page 6: Informer Security

Adding Users to Groups

Page 7: Informer Security

Root

Datasource

Mapping

Report Property Archive

Export Template

Security Structure

Page 8: Informer Security

Root

PERSON

Deny All Files

Grant

SSN

Deny

General Users

Power Users

Root

PAYROLL

Grant All Files

Deny

Page 9: Informer Security

Conflict• User in more than one group• Same level– Explicit overrides inherited– Deny overrides Grant

Page 10: Informer Security

SSN

Group A Group B

Explicitly Granted Explicitly Denied

Deny Wins

Group A Group B

Explicitly Granted Inherently Denied

Explicit Wins

Page 11: Informer Security
Page 12: Informer Security
Page 13: Informer Security

Two Levels of Enforcement• Presentation layer• Logic layer

Page 14: Informer Security

System Settings– Controls access to system settings– Admins only??– Settings

• Maintain groups and users• Maintain LDAP settings• Edit system settings• Create export templates• Manage user fields• View all reports• Maintain all schedules

Page 15: Informer Security

Reports– Controls what users and groups can do with reports shared to them– Settings

• Launch• Schedule• View definition• Share• Make personal copy• Export• Archive• Live Excel• Edit, copy or delete• Lock• Manage tags• Use database commands (TCL/ECL or SQL Where clause)

– Native Reporting• Edit• Run

Page 16: Informer Security

Archives– Controls access to archived reports– Settings• View• Export• Delete

Page 17: Informer Security

Data Sources– Controls access to database connections– Settings• Create• Add mappings• View connection settings

Page 18: Informer Security

Mappings– Files/Table access– Settings• View property and association metadata• Create reports

Page 19: Informer Security

Properties– Fields/Columns– Default grant or deny access to properties– Settings• View in a report column• Use in report criteria

Page 20: Informer Security

PDF

Export Templates– Defines PDF format– Settings• Use when exporting• Change• Delete

Page 21: Informer Security

• Function Definitions– Stored calculated columns– Settings• Edit• Delete

Page 22: Informer Security

Troubleshooting Security• Impersonate– Must be Informer Administrator

• Object Permissions– See what permissions a user has

Page 23: Informer Security

Examples

Page 24: Informer Security

Thank you! Any questions?