<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Security Role in NPrinting - Edit Task Issue in Qlik NPrinting</title>
    <link>https://community.qlik.com/t5/Qlik-NPrinting/Security-Role-in-NPrinting-Edit-Task-Issue/m-p/1792006#M31597</link>
    <description>&lt;P&gt;&lt;a href="https://community.qlik.com/t5/user/viewprofilepage/user-id/105165"&gt;@podge2019&lt;/a&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I found similar behavior in June 2020 SR 1 but when I tested with Feb. 2021 version of NPrinting, I found the most flexibility. For example I was able to add the specific view only scenario's you described in your images above without triggering 'filter' permissions.&lt;/P&gt;&lt;P&gt;I tested each of your scenarios and they all worked!&lt;/P&gt;&lt;P&gt;In any case, I suggest:&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;Ensuring to create one custom role per NP app only&lt;/LI&gt;&lt;LI&gt;Given that you are using Nov. 2019, Upgrade or TEST your scenarios on an NPrinting Feb. 2021 'test' server if you have access to one. (make sure you are logging out of NPrinting web console and logging in again to accurately test.)&lt;/LI&gt;&lt;LI&gt;If your requirements are not working as needed and you want to see additional flexibility, please share your idea for this here: &lt;A href="https://community.qlik.com/t5/Suggest-an-Idea/idb-p/qlik-ideas" target="_blank"&gt;https://community.qlik.com/t5/Suggest-an-Idea/idb-p/qlik-ideas&lt;/A&gt;&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;&lt;STRONG&gt;Note:&lt;/STRONG&gt;&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;only 'Users' can be assigned roles. Entities such as NPrinting 'groups' cannot be assigned roles.&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;&lt;STRONG&gt;Conclusion&lt;/STRONG&gt;: this all appears to be working as designed where NPrinting Feb. 2021 is used. (I did not test Sept. or Nov. 2020). If your specific requirements are still not working in Feb. 2021, I suggest writing up an 'idea' in the link above...but again, my tests indicate its working as expected.&lt;/P&gt;</description>
    <pubDate>Tue, 16 Mar 2021 20:28:04 GMT</pubDate>
    <dc:creator>Frank_S</dc:creator>
    <dc:date>2021-03-16T20:28:04Z</dc:date>
    <item>
      <title>Security Role in NPrinting - Edit Task Issue</title>
      <link>https://community.qlik.com/t5/Qlik-NPrinting/Security-Role-in-NPrinting-Edit-Task-Issue/m-p/1790971#M31524</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;I've add a new app to NPrinting and created a new Security role so that users can specifically Edit the Publish Task for this one App.&lt;/P&gt;&lt;P&gt;Users would need to be able to add in a filter ad-hoc hence adding in the Edit feature under Publish Tasks.&lt;/P&gt;&lt;P&gt;For a standard user they would &lt;U&gt;not&lt;/U&gt; have access to this edit field under their current Security Role.&lt;/P&gt;&lt;P&gt;My issue is that now when I add users into this new Security Role (in addition to their current security role) they have Edit on ALL tasks where they did not have this option before.&lt;/P&gt;&lt;P&gt;Is there someway to mitigate against users having this Edit option on all tasks?&lt;/P&gt;&lt;P&gt;More Details:&lt;/P&gt;&lt;P&gt;Current Security Role = Invoicing User -&amp;gt; No access to Edit Publish Tasks. 3 Existing apps under role.&lt;/P&gt;&lt;P&gt;New Security Role = Invoicing User 1 -&amp;gt; Same as above under Actions except for Edit under Publish Tasks. Only one new app added under this role.&lt;/P&gt;&lt;P&gt;So I have users now with these 2 Security Roles assigned and the permissions from the newly created role is overwriting the permissions applied under the first security role.&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="podge2019_0-1615558933137.png" style="width: 400px;"&gt;&lt;img src="https://community.qlik.com/t5/image/serverpage/image-id/51054iBB146DAEE2E4B926/image-size/medium?v=v2&amp;amp;px=400" role="button" title="podge2019_0-1615558933137.png" alt="podge2019_0-1615558933137.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 12 Mar 2021 14:23:58 GMT</pubDate>
      <guid>https://community.qlik.com/t5/Qlik-NPrinting/Security-Role-in-NPrinting-Edit-Task-Issue/m-p/1790971#M31524</guid>
      <dc:creator>podge2019</dc:creator>
      <dc:date>2021-03-12T14:23:58Z</dc:date>
    </item>
    <item>
      <title>Re: Security Role in NPrinting - Edit Task Issue</title>
      <link>https://community.qlik.com/t5/Qlik-NPrinting/Security-Role-in-NPrinting-Edit-Task-Issue/m-p/1791050#M31534</link>
      <description>&lt;P&gt;&lt;a href="https://community.qlik.com/t5/user/viewprofilepage/user-id/105165"&gt;@podge2019&lt;/a&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;To achieve that you will &lt;U&gt;&lt;EM&gt;likely&lt;/EM&gt; &lt;/U&gt;need to only use custom roles or update the existing and removing the default selected "All apps" check box which forces visibility to all &lt;STRONG&gt;NP Apps&lt;/STRONG&gt; for each custom role.&lt;/P&gt;&lt;P&gt;By default, the built in 'User' role will have access to all Apps. But 'all apps' can be unchecked for this role. However, if NP accounts are assigned to developer, newsstand or administrator, this checkbox cannot be unchecked. So again you would have to create custom roles to enable the level of granularity you are looking for.&lt;/P&gt;&lt;P&gt;As an option/suggestions, you may wish to create a separate role for each set of users that you wish to have access to a specific set of NP Apps (each NP app contains your connections, reports etc).&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Frank_S_0-1615571021689.png" style="width: 400px;"&gt;&lt;img src="https://community.qlik.com/t5/image/serverpage/image-id/51069iC4EA032FB961F50B/image-size/medium?v=v2&amp;amp;px=400" role="button" title="Frank_S_0-1615571021689.png" alt="Frank_S_0-1615571021689.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;Then once you've defined your custom roles with the assigned/selected NP apps, then add the custom roles to each NP user and remove default roles from each user since those will have access to 'All apps'&lt;/P&gt;&lt;P&gt;Then finally, set your publish task permissions for each custom role.&lt;/P&gt;&lt;P&gt;I would suggest doing this in a test environment so as to not impact your current production users.&lt;/P&gt;&lt;P&gt;This would be a highly customized solution and there is no export tool to show information about group membership.&lt;/P&gt;&lt;P&gt;I haven't tested this myself, but theoretically is should work.&amp;nbsp; A simple test might be to set up 2 test NP users and 2 custom roles. Give&lt;STRONG&gt;&lt;EM&gt; user 1&lt;/EM&gt; &lt;/STRONG&gt;access to &lt;EM&gt;&lt;STRONG&gt;customer role 1 (app1)&lt;/STRONG&gt;&lt;/EM&gt; and&lt;EM&gt;&lt;STRONG&gt; user 2&lt;/STRONG&gt;&lt;/EM&gt; access to &lt;STRONG&gt;custom role 2&lt;/STRONG&gt; (app2). No other roles should be applied to these test users.&lt;/P&gt;&lt;P&gt;Give Publish task permissions to custom role 1 but none to custom role 2. Does this keep the views to publish tasks limited only to user 1?&lt;/P&gt;&lt;P&gt;However, you may wish to install the NP governance dashboard found here to view roles and role membership.&lt;/P&gt;&lt;P&gt;&lt;A href="https://community.qlik.com/t5/Qlik-NPrinting-Documents/NPrinting-Governance-Dashboard/ta-p/1744538" target="_blank"&gt;https://community.qlik.com/t5/Qlik-NPrinting-Documents/NPrinting-Governance-Dashboard/ta-p/1744538&lt;/A&gt;&lt;/P&gt;&lt;P&gt;Kind regards...&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 12 Mar 2021 18:06:37 GMT</pubDate>
      <guid>https://community.qlik.com/t5/Qlik-NPrinting/Security-Role-in-NPrinting-Edit-Task-Issue/m-p/1791050#M31534</guid>
      <dc:creator>Frank_S</dc:creator>
      <dc:date>2021-03-12T18:06:37Z</dc:date>
    </item>
    <item>
      <title>Re: Security Role in NPrinting - Edit Task Issue</title>
      <link>https://community.qlik.com/t5/Qlik-NPrinting/Security-Role-in-NPrinting-Edit-Task-Issue/m-p/1791073#M31536</link>
      <description>&lt;P&gt;&lt;a href="https://community.qlik.com/t5/user/viewprofilepage/user-id/105165"&gt;@podge2019&lt;/a&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I did the test and it works:&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="customer role 1.PNG" style="width: 999px;"&gt;&lt;img src="https://community.qlik.com/t5/image/serverpage/image-id/51073iDC5DA19903031B12/image-size/large?v=v2&amp;amp;px=999" role="button" title="customer role 1.PNG" alt="customer role 1.PNG" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="custom role2.PNG" style="width: 999px;"&gt;&lt;img src="https://community.qlik.com/t5/image/serverpage/image-id/51074iCDE741F2971064A2/image-size/large?v=v2&amp;amp;px=999" role="button" title="custom role2.PNG" alt="custom role2.PNG" /&gt;&lt;/span&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 12 Mar 2021 18:47:29 GMT</pubDate>
      <guid>https://community.qlik.com/t5/Qlik-NPrinting/Security-Role-in-NPrinting-Edit-Task-Issue/m-p/1791073#M31536</guid>
      <dc:creator>Frank_S</dc:creator>
      <dc:date>2021-03-12T18:47:29Z</dc:date>
    </item>
    <item>
      <title>Re: Security Role in NPrinting - Edit Task Issue</title>
      <link>https://community.qlik.com/t5/Qlik-NPrinting/Security-Role-in-NPrinting-Edit-Task-Issue/m-p/1791349#M31541</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://community.qlik.com/t5/user/viewprofilepage/user-id/48712"&gt;@Frank_S&lt;/a&gt;&amp;nbsp;,&lt;/P&gt;&lt;P&gt;I've gone ahead and tested this following the guidance above on our Test Environment, however, this is still replicating the same issue.&lt;/P&gt;&lt;P&gt;As soon as my test user is added a new Security Role with Edit permission, along with the current role, the existing access they have is changed.&lt;/P&gt;&lt;P&gt;They are now able to edit the Publish Tasks they did not / should not be able to Edit.&lt;/P&gt;&lt;P&gt;In my NP Console set up we had actually never used the default "User" role.&lt;/P&gt;&lt;P&gt;We already had custom roles set up for an "Invoicing User" which only has access to 3 Apps - These 3 Apps they could not Edit the Publish Task.&lt;/P&gt;&lt;P&gt;The new Security Role was also for "Invoicing User - New App" which just has the Edit Publish Task on this one new App.&lt;/P&gt;&lt;P&gt;The Users who are affected are members of a Group -&amp;nbsp; "Invoicing Group" . This &lt;STRONG&gt;Group&lt;/STRONG&gt; is also assigned the Security Role for both&amp;nbsp;"Invoicing User" &amp;amp;&amp;nbsp;"Invoicing User - New App".&lt;/P&gt;&lt;P&gt;Could this be where the issue lies? A user being a member of a Group with a Security Role and also being directly assigned a Security Role?&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="podge2019_0-1615806820960.png" style="width: 400px;"&gt;&lt;img src="https://community.qlik.com/t5/image/serverpage/image-id/51142i43E3E13D44C828BB/image-size/medium?v=v2&amp;amp;px=400" role="button" title="podge2019_0-1615806820960.png" alt="podge2019_0-1615806820960.png" /&gt;&lt;/span&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="podge2019_1-1615806879174.png" style="width: 400px;"&gt;&lt;img src="https://community.qlik.com/t5/image/serverpage/image-id/51143i96C7F49C9D6B0250/image-size/medium?v=v2&amp;amp;px=400" role="button" title="podge2019_1-1615806879174.png" alt="podge2019_1-1615806879174.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 15 Mar 2021 11:16:34 GMT</pubDate>
      <guid>https://community.qlik.com/t5/Qlik-NPrinting/Security-Role-in-NPrinting-Edit-Task-Issue/m-p/1791349#M31541</guid>
      <dc:creator>podge2019</dc:creator>
      <dc:date>2021-03-15T11:16:34Z</dc:date>
    </item>
    <item>
      <title>Re: Security Role in NPrinting - Edit Task Issue</title>
      <link>https://community.qlik.com/t5/Qlik-NPrinting/Security-Role-in-NPrinting-Edit-Task-Issue/m-p/1791354#M31542</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://community.qlik.com/t5/user/viewprofilepage/user-id/48712"&gt;@Frank_S&lt;/a&gt;&amp;nbsp;,&lt;/P&gt;&lt;P&gt;Just to clarify on the above as its totally irrelevant regards the Security Role being applied to a Group.&amp;nbsp;&lt;span class="lia-unicode-emoji" title=":face_with_rolling_eyes:"&gt;🙄&lt;/span&gt;&lt;/P&gt;&lt;P&gt;I done a test whereby I removed a Users membership of the "Roles" above.&lt;/P&gt;&lt;P&gt;Logged in and all Apps, Tasks etc. were gone from the Console for the user. (which is expected)&lt;/P&gt;&lt;P&gt;Added back in the two "Roles" and removed the two "Groups" and this had no affect to the permissions,&lt;/P&gt;&lt;P&gt;The Groups are used under the Publish Task on the for the Apps already which I guess is the relevant part of this.&lt;/P&gt;&lt;P&gt;Thanks,&lt;/P&gt;&lt;P&gt;Padraig&lt;/P&gt;</description>
      <pubDate>Mon, 15 Mar 2021 11:26:45 GMT</pubDate>
      <guid>https://community.qlik.com/t5/Qlik-NPrinting/Security-Role-in-NPrinting-Edit-Task-Issue/m-p/1791354#M31542</guid>
      <dc:creator>podge2019</dc:creator>
      <dc:date>2021-03-15T11:26:45Z</dc:date>
    </item>
    <item>
      <title>Re: Security Role in NPrinting - Edit Task Issue</title>
      <link>https://community.qlik.com/t5/Qlik-NPrinting/Security-Role-in-NPrinting-Edit-Task-Issue/m-p/1791376#M31543</link>
      <description>&lt;P&gt;And last one&amp;nbsp;&lt;a href="https://community.qlik.com/t5/user/viewprofilepage/user-id/48712"&gt;@Frank_S&lt;/a&gt;&amp;nbsp;,&lt;/P&gt;&lt;P&gt;There appears to be one part that is working which is very strange.&lt;/P&gt;&lt;P&gt;So on the permissions for Existing &lt;SPAN&gt;"Invoicing User" there is nothing ticked for "Filters".&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;On the new Security Role&amp;nbsp;"Invoicing User - New App" when I tick the Edit Publish Task permission the "Filters" View tickbox gets automatically ticked.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;Now this is where it is strange....on the "Existing"&amp;nbsp;"Invoicing User" role this works so I cannot see the filters on the Publish Task, which Yes is correct, but why does this appear to work, however, the Edit Task does not.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;There does seem to be some distinction between them and is working to a certain degree, however, I can't see why the Edit does not work on the two Custom Roles.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;Existing&amp;nbsp;"Invoicing User" permissions - Existing Three Apps.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="podge2019_0-1615811165077.png" style="width: 400px;"&gt;&lt;img src="https://community.qlik.com/t5/image/serverpage/image-id/51147iBA770C6B827BF89B/image-size/medium?v=v2&amp;amp;px=400" role="button" title="podge2019_0-1615811165077.png" alt="podge2019_0-1615811165077.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;New&amp;nbsp;&lt;SPAN&gt;&amp;nbsp;"Invoicing User - New App" - Permissions - Just new app under selected&amp;nbsp;Items:&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="podge2019_1-1615811242456.png" style="width: 400px;"&gt;&lt;img src="https://community.qlik.com/t5/image/serverpage/image-id/51148iCBFF3D3C1731BBEA/image-size/medium?v=v2&amp;amp;px=400" role="button" title="podge2019_1-1615811242456.png" alt="podge2019_1-1615811242456.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 15 Mar 2021 12:28:11 GMT</pubDate>
      <guid>https://community.qlik.com/t5/Qlik-NPrinting/Security-Role-in-NPrinting-Edit-Task-Issue/m-p/1791376#M31543</guid>
      <dc:creator>podge2019</dc:creator>
      <dc:date>2021-03-15T12:28:11Z</dc:date>
    </item>
    <item>
      <title>Re: Security Role in NPrinting - Edit Task Issue</title>
      <link>https://community.qlik.com/t5/Qlik-NPrinting/Security-Role-in-NPrinting-Edit-Task-Issue/m-p/1792006#M31597</link>
      <description>&lt;P&gt;&lt;a href="https://community.qlik.com/t5/user/viewprofilepage/user-id/105165"&gt;@podge2019&lt;/a&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I found similar behavior in June 2020 SR 1 but when I tested with Feb. 2021 version of NPrinting, I found the most flexibility. For example I was able to add the specific view only scenario's you described in your images above without triggering 'filter' permissions.&lt;/P&gt;&lt;P&gt;I tested each of your scenarios and they all worked!&lt;/P&gt;&lt;P&gt;In any case, I suggest:&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;Ensuring to create one custom role per NP app only&lt;/LI&gt;&lt;LI&gt;Given that you are using Nov. 2019, Upgrade or TEST your scenarios on an NPrinting Feb. 2021 'test' server if you have access to one. (make sure you are logging out of NPrinting web console and logging in again to accurately test.)&lt;/LI&gt;&lt;LI&gt;If your requirements are not working as needed and you want to see additional flexibility, please share your idea for this here: &lt;A href="https://community.qlik.com/t5/Suggest-an-Idea/idb-p/qlik-ideas" target="_blank"&gt;https://community.qlik.com/t5/Suggest-an-Idea/idb-p/qlik-ideas&lt;/A&gt;&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;&lt;STRONG&gt;Note:&lt;/STRONG&gt;&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;only 'Users' can be assigned roles. Entities such as NPrinting 'groups' cannot be assigned roles.&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;&lt;STRONG&gt;Conclusion&lt;/STRONG&gt;: this all appears to be working as designed where NPrinting Feb. 2021 is used. (I did not test Sept. or Nov. 2020). If your specific requirements are still not working in Feb. 2021, I suggest writing up an 'idea' in the link above...but again, my tests indicate its working as expected.&lt;/P&gt;</description>
      <pubDate>Tue, 16 Mar 2021 20:28:04 GMT</pubDate>
      <guid>https://community.qlik.com/t5/Qlik-NPrinting/Security-Role-in-NPrinting-Edit-Task-Issue/m-p/1792006#M31597</guid>
      <dc:creator>Frank_S</dc:creator>
      <dc:date>2021-03-16T20:28:04Z</dc:date>
    </item>
  </channel>
</rss>

