<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Login access token security rule order in Management &amp; Governance</title>
    <link>https://community.qlik.com/t5/Management-Governance/Login-access-token-security-rule-order/m-p/39409#M723</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;In what order will the allocation of a login access token be done by a security order?&lt;/P&gt;&lt;P&gt;Example:&lt;/P&gt;&lt;P&gt;- Two pools with each 10 tokens.&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;Security rule pool 1: Usergroup = Login access&lt;/LI&gt;&lt;LI&gt;Security rule pool 2: Usergroup = Login access &lt;STRONG&gt;and &lt;/STRONG&gt;Dashboard = Employee&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Do i need to specify anything to make sure that a user that has the Employee properties does not uses tokens from pool 1? &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Mon, 16 Apr 2018 08:41:49 GMT</pubDate>
    <dc:creator>tmathijssen</dc:creator>
    <dc:date>2018-04-16T08:41:49Z</dc:date>
    <item>
      <title>Login access token security rule order</title>
      <link>https://community.qlik.com/t5/Management-Governance/Login-access-token-security-rule-order/m-p/39409#M723</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;In what order will the allocation of a login access token be done by a security order?&lt;/P&gt;&lt;P&gt;Example:&lt;/P&gt;&lt;P&gt;- Two pools with each 10 tokens.&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;Security rule pool 1: Usergroup = Login access&lt;/LI&gt;&lt;LI&gt;Security rule pool 2: Usergroup = Login access &lt;STRONG&gt;and &lt;/STRONG&gt;Dashboard = Employee&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Do i need to specify anything to make sure that a user that has the Employee properties does not uses tokens from pool 1? &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 16 Apr 2018 08:41:49 GMT</pubDate>
      <guid>https://community.qlik.com/t5/Management-Governance/Login-access-token-security-rule-order/m-p/39409#M723</guid>
      <dc:creator>tmathijssen</dc:creator>
      <dc:date>2018-04-16T08:41:49Z</dc:date>
    </item>
    <item>
      <title>Re: Login access token security rule order</title>
      <link>https://community.qlik.com/t5/Management-Governance/Login-access-token-security-rule-order/m-p/39410#M724</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Maybe &lt;A href="https://community.qlik.com/qlik-users/77808"&gt;mto&lt;/A&gt;‌ or &lt;A href="https://community.qlik.com/qlik-users/184092"&gt;ltu&lt;/A&gt;‌ can take a look here ?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 16 Apr 2018 09:17:10 GMT</pubDate>
      <guid>https://community.qlik.com/t5/Management-Governance/Login-access-token-security-rule-order/m-p/39410#M724</guid>
      <dc:creator>YoussefBelloum</dc:creator>
      <dc:date>2018-04-16T09:17:10Z</dc:date>
    </item>
    <item>
      <title>Re: Login access token security rule order</title>
      <link>https://community.qlik.com/t5/Management-Governance/Login-access-token-security-rule-order/m-p/39411#M725</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I've not seen a way to prioritize rules. I'd guess they'd evaluate in the order defined or possibly to the most restrictive.&lt;/P&gt;&lt;P&gt;Personally, I define my rules to be explicit so there is no question of some getting (or not getting) what they are supposed to.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 16 Apr 2018 17:16:13 GMT</pubDate>
      <guid>https://community.qlik.com/t5/Management-Governance/Login-access-token-security-rule-order/m-p/39411#M725</guid>
      <dc:creator>dwforest</dc:creator>
      <dc:date>2018-04-16T17:16:13Z</dc:date>
    </item>
    <item>
      <title>Re: Login access token security rule order</title>
      <link>https://community.qlik.com/t5/Management-Governance/Login-access-token-security-rule-order/m-p/39412#M726</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hey &lt;STRONG&gt;Tom&lt;/STRONG&gt;, &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Yes, I'd expect so.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;On my end, I have the following rules:&lt;/P&gt;&lt;P&gt;Pool 1: ((user.userId like "*"))&lt;/P&gt;&lt;P&gt;Pool 1: ((user.userId like "*" and user.name like "*"))&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;When simulating users, the users use tokens from Pool 1.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;So something like &lt;SPAN style="color: #3d3d3d; font-family: 'Helvetica Neue', Helvetica, Arial, 'Lucida Grande', sans-serif; font-size: 13px;"&gt;Usergroup = Login access AND &lt;SPAN style="color: #3d3d3d; font-family: 'Helvetica Neue', Helvetica, Arial, 'Lucida Grande', sans-serif; font-size: 13px;"&gt;Dashboard != Employee seems like a valid strategy (may need to experiment with user.dashboard.Empty() potentially).&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #3d3d3d; font-size: 13px; font-family: 'Helvetica Neue', Helvetica, Arial, 'Lucida Grande', sans-serif;"&gt;&lt;BR /&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #3d3d3d; font-size: 13px; font-family: 'Helvetica Neue', Helvetica, Arial, 'Lucida Grande', sans-serif;"&gt;Hope that helps.&lt;/SPAN&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 17 Apr 2018 18:01:38 GMT</pubDate>
      <guid>https://community.qlik.com/t5/Management-Governance/Login-access-token-security-rule-order/m-p/39412#M726</guid>
      <dc:creator>Levi_Turner</dc:creator>
      <dc:date>2018-04-17T18:01:38Z</dc:date>
    </item>
    <item>
      <title>Re: Login access token security rule order</title>
      <link>https://community.qlik.com/t5/Management-Governance/Login-access-token-security-rule-order/m-p/39413#M727</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Levi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;So i need to make sure that no overlap in the security rules exists.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 18 Apr 2018 07:32:12 GMT</pubDate>
      <guid>https://community.qlik.com/t5/Management-Governance/Login-access-token-security-rule-order/m-p/39413#M727</guid>
      <dc:creator>tmathijssen</dc:creator>
      <dc:date>2018-04-18T07:32:12Z</dc:date>
    </item>
    <item>
      <title>Re: Login access token security rule order</title>
      <link>https://community.qlik.com/t5/Management-Governance/Login-access-token-security-rule-order/m-p/39414#M728</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Yes, in this scenario with License Rules. If you want to ensure that a rule will not be evaluated as true to ensure that that pool isn't touched then the schema is:&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;A AND NOT B&lt;/LI&gt;&lt;LI&gt;A AND B&lt;/LI&gt;&lt;/UL&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 18 Apr 2018 15:25:29 GMT</pubDate>
      <guid>https://community.qlik.com/t5/Management-Governance/Login-access-token-security-rule-order/m-p/39414#M728</guid>
      <dc:creator>Levi_Turner</dc:creator>
      <dc:date>2018-04-18T15:25:29Z</dc:date>
    </item>
  </channel>
</rss>

