Skip to main content
cancel
Showing results for 
Search instead for 
Did you mean: 
Not applicable

Setting up security with Active Directory - is it Section Access or in the QlikView Server?

Hi all,

How can a large organisation align their QlikView application to have security that is the same as their logins for computers?

E.g. We want to set-up users so that the applications require same login ID's and passwords as what they use to login into the company network.

How can that be approached?

16 Replies
Not applicable
Author

I think the problem is that you don't have any free licenses. You can't really go around it...

What you can also do, is remove from time to time from those 13 Named Calls the ones which are not using QlikView anymore. Keep in mind, that removing a license that way will take 24 hrs since the last log in of that user. So it can be almost instant, or it can take some time.

Or you can get buy some new licenses for your server.

Not applicable
Author

I don't think we can remove the Named Cals as these (myself) included are used to edit / develop documents.

We have over 500 Document Cals available - are you able to explain the difference ?

Thanks again.

Not applicable
Author

You can use those Document Calls then. You should allocate enough Document Calls to each file that is going to be accessed. I can't really remember the exact place in the Documents tab where you can manage that. Can you have a look there? On the server I'm working now, we don't use Document Calls.

flipside
Partner - Specialist II
Partner - Specialist II

According to this thread http://community.qlik.com/message/642132#642132 you cannot allocate CALs to a group. I tried it recently with a custom group and that didn't work either. You CAN specify the group on the Authorization tab which permits them to see the QV document listed in AccessPoint, but that's not much help to your situation.

I'm surprised this isn't permitted.

flipside

Not applicable
Author

Thanks for your replies.  Thats the problem,  I've allocated 150 of Document Cals to the document and selected 'Allow dynamic CAL assignment'.  I've also added the AD group into the list of Assigned Users... but I'm getting errors from the users within that AD group when they try and access it.  Any ideas???

Cheers,

Tom

Not applicable
Author

Hi Thanks for your reply.. Can you point me in the direction of the Authorization tab?

flipside
Partner - Specialist II
Partner - Specialist II

Sure. It's in the QMC, Documents tab, click a document and it's the second tab along. It's at the same level as the tab where you allocate Document CALs. Seeing as you say that when you allocate a CAL to a specific user and they do then have access, then the group is probably already set.

Going back to your original problem, you can add and remove users using the QV Power Tools (http://community.qlik.com/message/184788#184788). I haven't done this myself but it should just be a case of exporting the users from the AD group into a file (you can connect to AD using Qlikview via OLEDB connection) then using qv-user-manager to import them in. Maybe someone else who manages a large number of users can confirm this or speak to your QV account manager.

Hope this helps

flipside