Universe Security

Hello Everyone,

What’s the differnece b/w universe security and user security in Universe properties of CMC XI3.1? they look the same

Also, is it possible to know the entire group, subgroup structure for a specific user at one go, something like a tree structure in XI 3.1? I find it very difficult to navigate to the groups and subgroups for a user and often get lost

Thanks,


bouser4 :us: (BOB member since 2007-03-23)

User Security is where you assign who has access to a universe, here you define what users can view a universe, access the data, or create queries from that universe.

Universe Security is where you define what groups have access to which objects in the universe. So if you setup the universe to have Object level security then you can choose which groups only have the public objects, private, etc.

Could you give more details with what you want on the group/subgroup structure?

There is a group hierarchy where you can view which groups are subgroups of other groups.


Bolandb (BOB member since 2010-06-08)

Hi ,

Thanks for your immediate response.

I have an issue here as that’s been the reason for this question. I actually have a user(user1) who is unable to access a particular universe object ( this object is restricted by nature in the universe ) . I expect the user account to still be able to access this restricted object because in the universe security of CMC everyone group is given public access , since user1 is part of everyone group he should be able to access this object

am I missing something here ? Security Acess Level on the universe object says that this object can be used by users having privilages greater than or equal to Restricted and my understanding is that Public is a greater privilage

Thanks,


bouser4 :us: (BOB member since 2007-03-23)

Your user must be a member of another group having a more restrictive right.

Hi Sebastian,

Thanks for your response. To add to this discussion, is it possible to define object level restrictions from 2 places ?

  1. from the universe ,object properties advanced ( public, private,etc ) , 2. from access restrictions in the universe , define object restrictions and set them to the appropriate group

If this is correct , What happens when a user groups is conflictingly set for an object level security? Also ,what is a suggested way in XI 3.1

Thanks,


bouser4 :us: (BOB member since 2007-03-23)

For sure you can use both. I don’t know how it will interacte. Maybe you can give this a try and share with us your results …