<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Qliksense Extension Permission Security rule in Management &amp; Governance</title>
    <link>https://community.qlik.com/t5/Management-Governance/Qliksense-Extension-Permission-Security-rule/m-p/1986233#M23372</link>
    <description>&lt;P&gt;Hi Albert,&lt;/P&gt;
&lt;P&gt;Here is the context.&lt;/P&gt;
&lt;P&gt;We have qlikbundled extensions that comes with qliksense and it is available to everyone under "Extensions" security rule. These extensions are used in many apps with out special security rules.&lt;/P&gt;
&lt;P&gt;Now we have bought 3'rd party extensions that we have to restrict from certain users / apps due to the cost.&lt;/P&gt;
&lt;P&gt;If I disable the default&amp;nbsp;"Extensions" sec rule and create sec rule for these 3'rd party extensions, the users / apps who were using the qlik bundled extensions will have permission issue.&lt;/P&gt;
&lt;P&gt;Again, creating security rule for each and every extension will be painful.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Is there a effective way of accomplishing my requirement?&lt;/P&gt;
&lt;P&gt;Thanks&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Tue, 27 Sep 2022 21:10:38 GMT</pubDate>
    <dc:creator>jpjust</dc:creator>
    <dc:date>2022-09-27T21:10:38Z</dc:date>
    <item>
      <title>Qliksense Extension Permission Security rule</title>
      <link>https://community.qlik.com/t5/Management-Governance/Qliksense-Extension-Permission-Security-rule/m-p/1984878#M23358</link>
      <description>&lt;P&gt;Hi All,&lt;/P&gt;
&lt;P&gt;We have quite a few extensions and everyone can use extension as per the following security rule.&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="jpjust_0-1663955046281.png" style="width: 400px;"&gt;&lt;img src="https://community.qlik.com/t5/image/serverpage/image-id/89806iB4466BD48BEE3B76/image-size/medium?v=v2&amp;amp;px=400" role="button" title="jpjust_0-1663955046281.png" alt="jpjust_0-1663955046281.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;Now, my requirement is to restrict few extensions from a set of users.&lt;/P&gt;
&lt;P&gt;So if I disable the above security rule and implement some thing like below, it allows users who has access to custom property = "Writeback" has access only to a particular extension (ID:c794c076-6efa-4c63-92c9-b977ea4cf101)&lt;/P&gt;
&lt;P&gt;And users will lose access to all other extension. How can I build on robust security rule to provide who can access what extension? Building security rule for each extension is not wise, I think.&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="jpjust_1-1663955144086.png" style="width: 400px;"&gt;&lt;img src="https://community.qlik.com/t5/image/serverpage/image-id/89807iC179CCF9DFBD89EC/image-size/medium?v=v2&amp;amp;px=400" role="button" title="jpjust_1-1663955144086.png" alt="jpjust_1-1663955144086.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 23 Sep 2022 17:48:14 GMT</pubDate>
      <guid>https://community.qlik.com/t5/Management-Governance/Qliksense-Extension-Permission-Security-rule/m-p/1984878#M23358</guid>
      <dc:creator>jpjust</dc:creator>
      <dc:date>2022-09-23T17:48:14Z</dc:date>
    </item>
    <item>
      <title>Re: Qliksense Extension Permission Security rule</title>
      <link>https://community.qlik.com/t5/Management-Governance/Qliksense-Extension-Permission-Security-rule/m-p/1985606#M23362</link>
      <description>&lt;P&gt;Hello&amp;nbsp;&lt;a href="https://community.qlik.com/t5/user/viewprofilepage/user-id/138713"&gt;@jpjust&lt;/a&gt;&amp;nbsp;,&lt;/P&gt;
&lt;P&gt;Thanks for posting.&lt;/P&gt;
&lt;P&gt;Would it work if you edit the default rule and try:&lt;/P&gt;
&lt;P data-unlink="true"&gt;resource.id!=&lt;EM&gt;ExtensionID&amp;nbsp;&lt;/EM&gt;and&amp;nbsp;user.@Profile="Group1"&amp;nbsp;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;so extensions different from that X,Z or Y and users belonging to a certain group.&lt;/P&gt;
&lt;P&gt;I have not tested myself, just is an idea.&lt;/P&gt;
&lt;P&gt;Cheers,&lt;/P&gt;
&lt;P&gt;Albert&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P data-unlink="true"&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 26 Sep 2022 19:49:23 GMT</pubDate>
      <guid>https://community.qlik.com/t5/Management-Governance/Qliksense-Extension-Permission-Security-rule/m-p/1985606#M23362</guid>
      <dc:creator>Albert_Candelario</dc:creator>
      <dc:date>2022-09-26T19:49:23Z</dc:date>
    </item>
    <item>
      <title>Re: Qliksense Extension Permission Security rule</title>
      <link>https://community.qlik.com/t5/Management-Governance/Qliksense-Extension-Permission-Security-rule/m-p/1986058#M23369</link>
      <description>&lt;P&gt;Thanks Albert, not sure if that works.&lt;/P&gt;
&lt;P&gt;Lets say, I have the following extensions.&lt;/P&gt;
&lt;P&gt;Ext1&lt;/P&gt;
&lt;P&gt;Ext2&lt;/P&gt;
&lt;P&gt;Ext3&lt;/P&gt;
&lt;P&gt;User1,User2,User3 only should have access to the above extensions&lt;/P&gt;
&lt;P&gt;Now&amp;nbsp; I have the following extensions&lt;/P&gt;
&lt;P&gt;Ext4&lt;/P&gt;
&lt;P&gt;Ext5&lt;/P&gt;
&lt;P&gt;Ext6&lt;/P&gt;
&lt;P&gt;user7,user8,user9 only should have access to the above extensions&lt;/P&gt;
&lt;P&gt;The above can be achieved if I create individual security rule with&amp;nbsp;Extension_c794c076-6efa-4c63-92c9-b977ea4cf101 for each extension. Then assign a custom property value.&amp;nbsp; But using this method, I will have to create individual security rule for each extension. Can you please check with your internal resources for an effective way or accomplishing this?&lt;/P&gt;
&lt;P&gt;Thanks&lt;/P&gt;</description>
      <pubDate>Tue, 27 Sep 2022 13:44:14 GMT</pubDate>
      <guid>https://community.qlik.com/t5/Management-Governance/Qliksense-Extension-Permission-Security-rule/m-p/1986058#M23369</guid>
      <dc:creator>jpjust</dc:creator>
      <dc:date>2022-09-27T13:44:14Z</dc:date>
    </item>
    <item>
      <title>Re: Qliksense Extension Permission Security rule</title>
      <link>https://community.qlik.com/t5/Management-Governance/Qliksense-Extension-Permission-Security-rule/m-p/1986197#M23371</link>
      <description>&lt;P&gt;Hello&amp;nbsp;&lt;a href="https://community.qlik.com/t5/user/viewprofilepage/user-id/138713"&gt;@jpjust&lt;/a&gt;,&lt;/P&gt;
&lt;P&gt;Could you kindly add more context on why of such requirement of restricting the extensions?&lt;/P&gt;
&lt;P&gt;Yes, creating a rule for each extension might lead to quite a few depending on the number you have and hence possible performance degradation.&lt;/P&gt;
&lt;P&gt;&lt;A href="https://www.youtube.com/watch?v=ZlReGEZ2PQk" target="_blank"&gt;STT - Optimizing Qlik Sense Enterprise with Rules - YouTube&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;Sure, I can have a look with my peers, but I have never seen such requirement before.&lt;/P&gt;
&lt;P&gt;Cheers,&lt;/P&gt;
&lt;P&gt;Albert&lt;/P&gt;</description>
      <pubDate>Tue, 27 Sep 2022 19:07:06 GMT</pubDate>
      <guid>https://community.qlik.com/t5/Management-Governance/Qliksense-Extension-Permission-Security-rule/m-p/1986197#M23371</guid>
      <dc:creator>Albert_Candelario</dc:creator>
      <dc:date>2022-09-27T19:07:06Z</dc:date>
    </item>
    <item>
      <title>Re: Qliksense Extension Permission Security rule</title>
      <link>https://community.qlik.com/t5/Management-Governance/Qliksense-Extension-Permission-Security-rule/m-p/1986233#M23372</link>
      <description>&lt;P&gt;Hi Albert,&lt;/P&gt;
&lt;P&gt;Here is the context.&lt;/P&gt;
&lt;P&gt;We have qlikbundled extensions that comes with qliksense and it is available to everyone under "Extensions" security rule. These extensions are used in many apps with out special security rules.&lt;/P&gt;
&lt;P&gt;Now we have bought 3'rd party extensions that we have to restrict from certain users / apps due to the cost.&lt;/P&gt;
&lt;P&gt;If I disable the default&amp;nbsp;"Extensions" sec rule and create sec rule for these 3'rd party extensions, the users / apps who were using the qlik bundled extensions will have permission issue.&lt;/P&gt;
&lt;P&gt;Again, creating security rule for each and every extension will be painful.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Is there a effective way of accomplishing my requirement?&lt;/P&gt;
&lt;P&gt;Thanks&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 27 Sep 2022 21:10:38 GMT</pubDate>
      <guid>https://community.qlik.com/t5/Management-Governance/Qliksense-Extension-Permission-Security-rule/m-p/1986233#M23372</guid>
      <dc:creator>jpjust</dc:creator>
      <dc:date>2022-09-27T21:10:38Z</dc:date>
    </item>
    <item>
      <title>Re: Qliksense Extension Permission Security rule</title>
      <link>https://community.qlik.com/t5/Management-Governance/Qliksense-Extension-Permission-Security-rule/m-p/1987701#M23386</link>
      <description>&lt;P&gt;Hi Albert,&lt;/P&gt;
&lt;P&gt;Just wondering if you have any findings on this?&lt;/P&gt;
&lt;P&gt;Thanks&lt;/P&gt;</description>
      <pubDate>Fri, 30 Sep 2022 17:38:51 GMT</pubDate>
      <guid>https://community.qlik.com/t5/Management-Governance/Qliksense-Extension-Permission-Security-rule/m-p/1987701#M23386</guid>
      <dc:creator>jpjust</dc:creator>
      <dc:date>2022-09-30T17:38:51Z</dc:date>
    </item>
    <item>
      <title>Re: Qliksense Extension Permission Security rule</title>
      <link>https://community.qlik.com/t5/Management-Governance/Qliksense-Extension-Permission-Security-rule/m-p/1987732#M23387</link>
      <description>&lt;P&gt;Hello&amp;nbsp;&lt;a href="https://community.qlik.com/t5/user/viewprofilepage/user-id/138713"&gt;@jpjust&lt;/a&gt;&amp;nbsp;,&lt;/P&gt;
&lt;P&gt;Thanks for adding the context.&lt;/P&gt;
&lt;P&gt;No further findings till now, apart from the hard way you have mentioned. I will share it within my peers in case someone working more on implementation topics like pre-sales or professional services has an idea on such.&lt;/P&gt;
&lt;P&gt;Cheers,&lt;/P&gt;
&lt;P&gt;Albert&lt;/P&gt;</description>
      <pubDate>Fri, 30 Sep 2022 19:47:51 GMT</pubDate>
      <guid>https://community.qlik.com/t5/Management-Governance/Qliksense-Extension-Permission-Security-rule/m-p/1987732#M23387</guid>
      <dc:creator>Albert_Candelario</dc:creator>
      <dc:date>2022-09-30T19:47:51Z</dc:date>
    </item>
    <item>
      <title>Re: Qliksense Extension Permission Security rule</title>
      <link>https://community.qlik.com/t5/Management-Governance/Qliksense-Extension-Permission-Security-rule/m-p/1991469#M23461</link>
      <description>&lt;P&gt;At least on my installation of Qlik Sense Enterprise, the bundled extensions all fit into this naming convention:&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;qlik-*&lt;/LI&gt;&lt;LI&gt;sn-*&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;View from the QMC:&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Levi_Turner_0-1665509833009.png" style="width: 400px;"&gt;&lt;img src="https://community.qlik.com/t5/image/serverpage/image-id/91091iDA2FCD9085E48C2C/image-size/medium?v=v2&amp;amp;px=400" role="button" title="Levi_Turner_0-1665509833009.png" alt="Levi_Turner_0-1665509833009.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;From there you can create a rule like so:&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Levi_Turner_2-1665509953670.png" style="width: 400px;"&gt;&lt;img src="https://community.qlik.com/t5/image/serverpage/image-id/91098i56A5D5778542E948/image-size/medium?v=v2&amp;amp;px=400" role="button" title="Levi_Turner_2-1665509953670.png" alt="Levi_Turner_2-1665509953670.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;The way of describing it would be, for all extensions whose names begin with qlik- or sn-, grant access (read) to all users.&lt;/P&gt;&lt;P&gt;From there you can customize the rule for the third party extension(s) by name or ID for the users who have licenses / entitlements for those extensions.&lt;/P&gt;</description>
      <pubDate>Tue, 11 Oct 2022 17:39:52 GMT</pubDate>
      <guid>https://community.qlik.com/t5/Management-Governance/Qliksense-Extension-Permission-Security-rule/m-p/1991469#M23461</guid>
      <dc:creator>Levi_Turner</dc:creator>
      <dc:date>2022-10-11T17:39:52Z</dc:date>
    </item>
    <item>
      <title>Re: Qliksense Extension Permission Security rule</title>
      <link>https://community.qlik.com/t5/Management-Governance/Qliksense-Extension-Permission-Security-rule/m-p/1991931#M23473</link>
      <description>&lt;P&gt;Hi Levi - As always great to hear from you. Thank you so much for chiming in with this idea and I believe this is going to work for my requirement.&lt;/P&gt;
&lt;P&gt;I am going to implement this in our environment&amp;nbsp; for extensions and will update here.&lt;/P&gt;
&lt;P&gt;Thanks&lt;/P&gt;</description>
      <pubDate>Wed, 12 Oct 2022 18:55:08 GMT</pubDate>
      <guid>https://community.qlik.com/t5/Management-Governance/Qliksense-Extension-Permission-Security-rule/m-p/1991931#M23473</guid>
      <dc:creator>jpjust</dc:creator>
      <dc:date>2022-10-12T18:55:08Z</dc:date>
    </item>
    <item>
      <title>Re: Qliksense Extension Permission Security rule</title>
      <link>https://community.qlik.com/t5/Management-Governance/Qliksense-Extension-Permission-Security-rule/m-p/2006110#M23800</link>
      <description>&lt;P&gt;Hi Levi - I have one more question if you don't mind:&lt;/P&gt;
&lt;P&gt;I have few additional extensions as you can see below. I tried with naming conventions for eg., like cl*, Da* etc., but it is not getting applied, meaning users are not able to see those extensions (eg., Cluster Night Mode, Dashboard Link....)&lt;/P&gt;
&lt;P&gt;Do you see any issues?&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="jpjust_0-1668718276736.png" style="width: 400px;"&gt;&lt;img src="https://community.qlik.com/t5/image/serverpage/image-id/94025i5045E9D42568EF9F/image-size/medium?v=v2&amp;amp;px=400" role="button" title="jpjust_0-1668718276736.png" alt="jpjust_0-1668718276736.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;Here is the sec rule&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="jpjust_1-1668718516474.png" style="width: 400px;"&gt;&lt;img src="https://community.qlik.com/t5/image/serverpage/image-id/94028iA21F149FDFAD0FDA/image-size/medium?v=v2&amp;amp;px=400" role="button" title="jpjust_1-1668718516474.png" alt="jpjust_1-1668718516474.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 17 Nov 2022 20:55:46 GMT</pubDate>
      <guid>https://community.qlik.com/t5/Management-Governance/Qliksense-Extension-Permission-Security-rule/m-p/2006110#M23800</guid>
      <dc:creator>jpjust</dc:creator>
      <dc:date>2022-11-17T20:55:46Z</dc:date>
    </item>
  </channel>
</rss>

