More Security Strangness
Posted: Fri Jun 03, 2011 8:41 pm
Guys,
I am seeing something really wierd. I have created a model and I have set it to interact with another guys Cognos BI security model for single sign on. We have ste the security status to 4 in teh CFG and added all the CAM settings. I have then created a user list in TM1 that reflects the users in BI. I have then used TI processes to update the security cubes.
The issues I have had revolves around the {ClientsGroups cube. I have a TI process that creates the user, then one that creates the groups and finally one that updates the }ClientsGroups cube. (In the processes I have added a manual set of forumlas that adds a seperate admin user that we can logon with that exists in the BI userbase.
Below is the }ClientsGroups cube after running the TI processes:
I then logon using the test user we have called E066409. This is a valid user with valid security settings and you can see the client group settings in the picture abaove.
When I logon I'm not able to access any of the dimensions where security has been applied. I then log off and log back on as the admin user. Upon examining the }ClientsGroups cube I found:
The settings in the cube have gone. The only thing I can guess is that BI when passing the user details is also passing security details. Does anybody know if this is true and how you can stop this from happening.
Thanks,
Jim.
I am seeing something really wierd. I have created a model and I have set it to interact with another guys Cognos BI security model for single sign on. We have ste the security status to 4 in teh CFG and added all the CAM settings. I have then created a user list in TM1 that reflects the users in BI. I have then used TI processes to update the security cubes.
The issues I have had revolves around the {ClientsGroups cube. I have a TI process that creates the user, then one that creates the groups and finally one that updates the }ClientsGroups cube. (In the processes I have added a manual set of forumlas that adds a seperate admin user that we can logon with that exists in the BI userbase.
Below is the }ClientsGroups cube after running the TI processes:
I then logon using the test user we have called E066409. This is a valid user with valid security settings and you can see the client group settings in the picture abaove.
When I logon I'm not able to access any of the dimensions where security has been applied. I then log off and log back on as the admin user. Upon examining the }ClientsGroups cube I found:
The settings in the cube have gone. The only thing I can guess is that BI when passing the user details is also passing security details. Does anybody know if this is true and how you can stop this from happening.
Thanks,
Jim.