<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Rule to Override App Level Security in Management &amp; Governance</title>
    <link>https://community.qlik.com/t5/Management-Governance/Rule-to-Override-App-Level-Security/m-p/1529563#M12259</link>
    <description>&lt;P&gt;Happy New Year Everyone!&amp;nbsp;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Our current set up has apps in some streams secured by AppLevelManagement where specific AD groups are applied for access.&amp;nbsp; Leadership now wants a view of all Streams and Apps - the question is:&lt;/P&gt;&lt;P&gt;What is the syntax for the rule that allows leadership to see all streams and apps even those with app level management without having to create a group for leadership and apply it to every app and have to maintain it going forward?&amp;nbsp;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;We have gotten this far but cannot view those apps with AppLevelManagement applied to them:&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;((user.group="ITLeaders" and resource.resourcetype="App" and resource.published="true") or user.group = "ITLeaders" and resource.resourcetype ="Stream")&lt;/P&gt;</description>
    <pubDate>Sat, 16 Nov 2024 06:52:21 GMT</pubDate>
    <dc:creator>fgm001qlik</dc:creator>
    <dc:date>2024-11-16T06:52:21Z</dc:date>
    <item>
      <title>Rule to Override App Level Security</title>
      <link>https://community.qlik.com/t5/Management-Governance/Rule-to-Override-App-Level-Security/m-p/1529563#M12259</link>
      <description>&lt;P&gt;Happy New Year Everyone!&amp;nbsp;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Our current set up has apps in some streams secured by AppLevelManagement where specific AD groups are applied for access.&amp;nbsp; Leadership now wants a view of all Streams and Apps - the question is:&lt;/P&gt;&lt;P&gt;What is the syntax for the rule that allows leadership to see all streams and apps even those with app level management without having to create a group for leadership and apply it to every app and have to maintain it going forward?&amp;nbsp;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;We have gotten this far but cannot view those apps with AppLevelManagement applied to them:&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;((user.group="ITLeaders" and resource.resourcetype="App" and resource.published="true") or user.group = "ITLeaders" and resource.resourcetype ="Stream")&lt;/P&gt;</description>
      <pubDate>Sat, 16 Nov 2024 06:52:21 GMT</pubDate>
      <guid>https://community.qlik.com/t5/Management-Governance/Rule-to-Override-App-Level-Security/m-p/1529563#M12259</guid>
      <dc:creator>fgm001qlik</dc:creator>
      <dc:date>2024-11-16T06:52:21Z</dc:date>
    </item>
    <item>
      <title>Re: Rule to Override App Level Security</title>
      <link>https://community.qlik.com/t5/Management-Governance/Rule-to-Override-App-Level-Security/m-p/1529614#M12261</link>
      <description>&lt;P&gt;I figured it out using two rules - one to apply access for leaders to see all streams: Resource - Stream_* and applying the group then a second rule to only read apps published to streams:&amp;nbsp;&lt;/P&gt;&lt;P&gt;((user.group="ITLeadership") and resource.resourcetype= "App" and resource.stream.HasPrivilege("read"))&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;**To amend to this, the main problem I was having was that App_* itself opened up all apps that were in all work streams showing in the personal work stream of the IT Leaders**&lt;/P&gt;</description>
      <pubDate>Fri, 11 Jan 2019 18:58:42 GMT</pubDate>
      <guid>https://community.qlik.com/t5/Management-Governance/Rule-to-Override-App-Level-Security/m-p/1529614#M12261</guid>
      <dc:creator>fgm001qlik</dc:creator>
      <dc:date>2019-01-11T18:58:42Z</dc:date>
    </item>
  </channel>
</rss>

