<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic login access vs user access rules in App Development</title>
    <link>https://community.qlik.com/t5/App-Development/login-access-vs-user-access-rules/m-p/24#M4</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;We are using AD security groups to define access to our production QlikSense applications. However, I notice that in our license configuration we have created both a login access and user access rule for the AD group; e.g.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;License.UserAccessGroup_fdf60759-bb4e-4175-b48c-bc2c525ce223&lt;/P&gt;&lt;P&gt;((user.group="QVSMGAR"))&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;and also&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;License.LoginAccessType_739c98d3-cefb-4f9c-aa6f-d59906700d76&lt;/P&gt;&lt;P&gt;((user.group="QVSMGAR"))&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Now it seems to me we do not need both these rules and that since we have a limited number of tokens, we should delete the user access rule and manually allocate only the 1 or 2 power users directly.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Since we have allocated all our tokens anyway (between manual user access allocations and login access rules), does the first rule essentially "roll over" into granting login access?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I think we should not have any user access rules at all...not sure why these exist. Am I missing something?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Fri, 12 Jan 2018 13:51:05 GMT</pubDate>
    <dc:creator>daveatkins</dc:creator>
    <dc:date>2018-01-12T13:51:05Z</dc:date>
    <item>
      <title>login access vs user access rules</title>
      <link>https://community.qlik.com/t5/App-Development/login-access-vs-user-access-rules/m-p/24#M4</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;We are using AD security groups to define access to our production QlikSense applications. However, I notice that in our license configuration we have created both a login access and user access rule for the AD group; e.g.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;License.UserAccessGroup_fdf60759-bb4e-4175-b48c-bc2c525ce223&lt;/P&gt;&lt;P&gt;((user.group="QVSMGAR"))&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;and also&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;License.LoginAccessType_739c98d3-cefb-4f9c-aa6f-d59906700d76&lt;/P&gt;&lt;P&gt;((user.group="QVSMGAR"))&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Now it seems to me we do not need both these rules and that since we have a limited number of tokens, we should delete the user access rule and manually allocate only the 1 or 2 power users directly.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Since we have allocated all our tokens anyway (between manual user access allocations and login access rules), does the first rule essentially "roll over" into granting login access?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I think we should not have any user access rules at all...not sure why these exist. Am I missing something?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 12 Jan 2018 13:51:05 GMT</pubDate>
      <guid>https://community.qlik.com/t5/App-Development/login-access-vs-user-access-rules/m-p/24#M4</guid>
      <dc:creator>daveatkins</dc:creator>
      <dc:date>2018-01-12T13:51:05Z</dc:date>
    </item>
  </channel>
</rss>

