Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations gkittelson on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

Application security flaws

Status
Not open for further replies.

Luvsql

Technical User
Apr 3, 2003
1,179
CA
I just created a new user class and went through every single window and menu option with advanced security on Dyn 9 and removed everything but a few windows.

Good thing I logged in as a test user with this account. There are setup window and reports that they should NOT have access to: All the report lists per module: THey can basically print a report for all the financials, AR, AP etc. If they have no access to these reports, where is this security coming from and why is it turned on by default?

Why remove a user's access from going to Report > Financial, if they can just view the company's financial reports with this view?

How can we remove these?

THe other windows that they had access to was setup > purchaing > control account management, extender > maintenance > refresh cache, Tools > setup > setup checklist.

 
Advanced Security can only control windows in the "By menu" view if the menu command directly opens a window. If the menu command runs a script which in turn opens the window, then Advanced Security cannot stop it using the "By menu" view.

Open the window, find the window title and use the "By Dictionary" view to deny access.

Access to reports can be control by using By Dictionary >> [Dictionary] >> Reports or by denying access to tables used on the reports.


See my Advanced Security FAQ KB for more info:

David Musgrave [MSFT]
Escalation Engineer - Microsoft Dynamics GP
Microsoft Dynamics Support - Asia Pacific

Microsoft Dynamics (formerly Microsoft Business Solutions)

Any views contained within are my personal views and
not necessarily Microsoft Business Solutions policy.
This posting is provided "AS IS" with no warranties,
and confers no rights.
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top