How do we check user access control in Apex

Hi All,
In my application we have three different roles like
1 = Write/Edit
2 = Write/Edit/Export
3 = View Only
Based on the roles i have dsiplay the show and hide few things. How do achieve this property in apex?
Thanks,
Anoo..

Always include the following information when asking a question
Full APEX version
Full DB/version/edition/host OS
Web server architecture (EPG, OHS or APEX listener/host OS)
Browser(s) and version(s) used
Theme
Template(s)
Region/item type(s)
And always search on oracle documentation and apex forum before posting a question
Anoo wrote:
Hi All,
In my application we have three different roles like
1 = Write/Edit
2 = Write/Edit/Export
3 = View Only
Based on the roles i have dsiplay the show and hide few things. How do achieve this property in apex?
Thanks,
Anoo..You can create 3 different authorizations for each one above, and use the authorization in the region,page, item level etc..
http://docs.oracle.com/cd/E23903_01/doc/doc.41/e21674/sec_authorization.htm#HTMDB25782

Similar Messages

  • Adobe with User Access Control

    I am trying to watch videos which use Flash Player and they
    will play if I turn off my User Access Control however, as soon as
    I turn it back on, the videos will not play; I do not want to keep
    my User Access Control off - is there some solution to this? I was
    able to use flash before without turning this off but I could not
    tell you what happened other than I added Adobe Reader (registered
    version) and an update to my computer.

    quote:
    Originally posted by:
    brohdaw
    I am trying to watch videos which use Flash Player and they
    will play if I turn off my User Access Control however, as soon as
    I turn it back on, the videos will not play; I do not want to keep
    my User Access Control off - is there some solution to this? I was
    able to use flash before without turning this off but I could not
    tell you what happened other than I added Adobe Reader (registered
    version) and an update to my computer.
    Okay, I followed the steps for another posting...
    http://www.adobe.com/cfusion/webforums/forum/messageview.cfm?forumid=15&catid=194&threadid =1415087&enterthread=y
    However, this did not help the problem; I did everything
    exactly the way it appears on these instructions however, one part
    I had to do differently - where it states to place the
    reset_fp10.cmd I also received an administrator error
    message:
    eExtracting to "C:\Program Files\Windows Resource Kits\Tools\"
    Use Path: yes Overlay Files: no
    Error: Access is denied.
    Cannot create C:\Program Files\Windows Resource
    Kits\Tools\reset_fp10.cmd.
    Administrative privileges may be required
    Therefore, I saved this file to documents and then moved it
    to the C:\Program Files\Windows Resource Kits\Tools\ folder.
    Everything else followed just the way the details explained they
    would so I figured it should have worked.
    My main thing is, this is my laptop and I'm the only user so
    I should have Admin. privileges without any of this to begin with!
    I check my user settings and it is set at "Administrator
    Privileges." This is making no sense; I have had this computer
    three years and I went through this one other time but I cannot
    remember how I fixed it - this time I am being wise and saving
    everything in a note however, that's only going to help if I ever
    get this issue fixed.
    Can anyone help?
    also feel free to contact me by an alternate (but checked
    more frequently)
    [email protected]
    Thank you,
    Kerri

  • How To Performance Optimize GRC Access Control 5.3

    Hi Everyone,
    GRC RIG published in BPX the following How-To-Guide:
    How To Performance Optimize GRC Access Control 5.3
    https://www.sdn.sap.com/irj/sdn/go/portal/prtroot/docs/library/uuid/90aa3190-8386-2b10-c4ba-ced67322ea6d
    We appreciate any feedback and will keep track of all suggestions to improve future versions of this guide.
    Frank Rambo
    Director RIG EMEA
    SAP Governance, Risk and Complicance

    to access CUP:
    http://<hostname>:<portnumber>/AE
    To access RAR:
    http://<hostname>:<portnumber>/webdynpro/dispatcher/sap.com/grc~ccappcomp/ComplianceCalibrator
    to access SPM
    http://<hostname>:<port>/webdynpro/dispatcher/sap.com/grc~ffappcomp/Firefighter
    to access ERM:
    http://<hostname>:<portnumber>/RE
    Launch pad link:
    http://<server name>:5<instance>00/webdynpro/dispatcher/sap.com/grc~acappcomp/AC
    NW start page:
    http://<hostname>:<portnumber>/index.html

  • How can OWB apply information access control policy?

    Hi friends,
    My question is "how can OWB apply information access control policy in DW?"
    Regards

    Hi,
    what exactly do you mean by "information access control policy"?
    What you cannot do in owb is define grants or virtual private database (vpd) constraints.
    What you can do is restrict the developer's access to owb objects in the repository.
    Regards,
    Carsten.

  • File structure and Multi-user access/control

    Hi All
    Currently evaluating RH. Our plan is to use RH HTML with RoboServer and either SourceSafe or Team Foundation for source control. We will be producing the "printed" manual (PDF) and publishing online help (hopefully html via RH server) from the single source layout
    Given that we will edit content in RH's XHTML editor, I'm not clear on when we should create new files or the granularity of multi-user access. We have 17 apps and I plan to use a master project and merging (because we need to link to related topics in other apps).
    I'm really not sure what should constitute a file in RH. First off, is access controlled at the file level?
    I want to have multiple authors editing the same manual at the same time, so do I need to break the manual into multiple small files (currently it's a single word doc)?
    If I do break it into multiple files, what's the best approach: 1 file per topic (or is this a requirement)?
    Finally, when I come to generate the PDF, will the files be combined. (i.e. can I have different page-breaks than I have in the RH project)?
    Any pointers greatly appreciated
    Regards
    Mark

    Hi,
    First off, is access controlled at the file level?
    Not sure what you mean by that. In source control, you can check in/out ever file independent. Sometimes dependent files will be automatically checked out, for instance images used in the css when you check out the style sheet.
    I want to have multiple authors editing the same manual at the same time, so do I need to break the manual into multiple small files (currently it's a single word doc)?
    That be the idea. Anyway, it's not a good idea to have an entire RoboHelp project in a single topic. You probably want to cut up your contents into the small chunck: topics.
    If I do break it into multiple files, what's the best approach: 1 file per topic (or is this a requirement)?
    In RoboHelp a topic is a HTML file. RoboHelp doesn't force you to split up content into one or more topics. If you are creating help for the web, you want the information to be organized in relatively small chunck so users can quickly scan through it.
    Finally, when I come to generate the PDF, will the files be combined. (i.e. can I have different page-breaks than I have in the RH project)?
    Not sure what you mean by page breaks. As RoboHelp creates HTML files, there are no page breaks such as in paper manuals. When you create a PDF, you combine the topics you need into a single document.
    If a PDF is required for you, you may want to consider not using RoboHelp for your sources. A PDF created by RoboHelp is useful for internal use, but it never seems to get good enough to give to customers. Personally, when a PDF version of a manual is required, I create the manual in FrameMaker and link or import the book into RoboHelp. You can also link Word documents, so you may want to play around with that before deciding whether to use Word, RoboHelp or FrameMaker for your source.
    Greet,
    Willam

  • More than 1 user access control of vi via web browser

    Hi all,
    Currently I've a vi that need to share it with other PCs using web browser (eg: IE) I've tried using Web Publishing Tools and I noticed that only 1 pc at a time can grant access control of the vi. May I know is there any methods or other 3rd party software that could possibly able to give multiple PCs to control one vi simultaneously over the net using web browser? THANKS!!!...

    Hello,
    I’m not so sure that using VNC or remote desktop to have
    multiple users control LabVIEW is really in-line with our license policy.  I suppose if you built your program into an executable
    and had the VNC users access the exe program they wouldn't really be using the development
    environment so I suppose this would be ok…
    I found a tutorial which might help.  Check out: http://zone.ni.com/devzone/conceptd.nsf/webmain/bc79065d8b2e0d0886256c590072a454.
    Hopefully this will help out for now!  Let us know if you have questions-
    Travis M
    LabVIEW R&D
    National Instruments

  • Checking user access status

    I'm writing an installer with InstallAnywhere. When the installation is made on a Windows machine we need to set a System Variable, system-wide if possible. How can I check the user's access rights in java? Is there any way to tell if he has full access on his system (ie, logged in as administrator) or not?
    I need to be able to do this for every Win32 system.
    Thanks,
    Walter Gildersleeve
    Productivity Engineering, GmbH
    Freiburg, Germany

    this code return all system properties U can access
    Properties p = System.getProperties();
    but I didn't find any information about user access right... :(

  • Authenticate users & Access Control

    Hi All,
    (First apologies if this is not the correct forum)
    I'm hoping someone can give me a little help or advice on
    options available to me.
    Using flex2 I have built a fairly simple flash app that
    currrently has two panels,
    panel1- this presents data in a datagrid which connects to a
    mysql4.x db via amfphp1.9.
    panel2- this presents textinput boxes and a submit button
    (data is submited via php script to the myqsl db)
    NB: All my users authenticate via LDAP (novell edirectory)
    & there are two kinds of users (Teachers & Students)
    What I want to know is:
    1- can I allow my users to login to the flash app via their
    LDAP usernames? (if so how could I do this)
    2- can I assign different rights to the users? (e.g. When a
    teacher logs in they get access to view & input data, &
    when a student logs in the ONLY have access to view data)
    NB: I work in a school so I don't have the budget to buy CF,
    FDS. I also do not want to use the userbase in the mysql db, as
    this would then require me to maintain two userbases (e.g. LDAP
    & MySQL) hence twice the workload.
    Any help or suggestions to best approach this problem would
    be greatly appreciated.
    TIA
    Danny

    that was my instinct exactly, we do have an LDAP here however this application has a max of 3 users roughly with one as a supper-user, so im not sure if its worth using the LDAP API at present
    i am tempted to build and access control page initially, however we are all new to APEX here and were a little worried about security issues mainly because of the nature of the information we are holding this time.
    thanks for your thoughts on the matter
    Sol

  • How to trace an user access

    Even if I've got no DBA permission (for example I don't see the v$session table), have I got any way to trace the users accessing the DB? How can I do? I was told about trace but can someone tell me more? I'd like to know the user accessing the DB and the operation that he's launching. Is it possible?
    Thanks!

    Anything is possible if you have the correct privileges. But then you probably don't have those privileges, and probably for a reason, as you probably also don't have the DBA role for a reason.
    If you are to enable trace in a different session, you would need execute access on an Oracle provided package, which differs by version, and of course you assume Oracle never changes, and there is only one version out there: yours.
    For a DBA it would be the easiest to grant you the select_catalog_role and the execute_catalog_role.
    But then again one would ask why you think you should spy on him, and why you don't cooperate with him and/or try to convince him.
    Sybrand Bakker
    Senior Oracle DBA

  • How can know which user accessing specific form in ERP application

    Hi,
    In our organization we have ERP application that is developed based on Orace forms and reports 10g.
    My question is how can i know which user accessing specific form in ERP application based on their login.
    Please do the needful.
    Regards,
    M. Satish

    What I infer from your statements now, significantly different from your OP, is that you do not have any logging mechanism and now want to introduce logging with minimum effort.
    If that is the case you can add the logging code in your Menu(s), before the CALL_FORM/NEW_FORM. Fewer object(s) to modify, but roughly the same lines of code get added.
    Regards,

  • How can my main user access files of sharing only user?

    I use network MFD to scan files into shared folders through Samba. Works perfectly fine on Windows: scanner uses its own limited account to access shared folder and store files, but Windows admin user is the owner of this folder and of all of the PDFs in it.
    I wanted to setup same system under Mac OS X 10.9.4. I created sharing only user "scanner" for my network MFD to access shared "Scan" folder on my MacBook Air through Samba. I shared this "Scan" folder for both my main MacBook user and "scanner" user with read/write permissions. Now if my network scanner logs on to the shared folder with username/password of my main user (and I consider this insecure and wrong) - everything works fine. But if network scanner uses its special "scanner" account, it creates file which I can't open later with my main MacBook user ("scanner" is the owner of this file, and "main" doesn't have permission even to read the file).
    Looks like newly created files in shared folder don't inherit permissions of the folder.
    Is there a way to force my main MacBook account to be owner of all files created by "scanner" account (at least in one folder used for scan results)?

    Create a “scannergroup” group in Users & Groups. It’s the same process as for a user, but change the type to Group. Add all of your real users and your scanner user to the group.
    Open Terminal and copy/paste this command into the terminal window. If you want to use different names for the Group or the folder, edit the line in a text editor, then copy/paste it into Terminal.
    sudo chmod -R +a "scannergroup allow delete,chown,list,search,add_file,add_subdirectory,delete_child,file_inherit,directory_inherit" /Users/Shared/Scan
    To change the group name in the command, change scannergroup to whatever you create in Users & Groups.
    To change the folder, change the full path as shown by /Users/Shared/Scan
    That command creates an Access Control List entry that allows each member of the scannergroup to read/write/delete/ items created by others in the group.

  • User access control and WebStart

    I'm considering tools and utils for a new project and WebStart looks like it could suit our needs just perfect.
    Just one little question:
    If I have a system with multiple applications controlled by WebStart, is it possible to restrict user access?
    I need to be able to present different selections of applications to different types of users, is this possible to configure/code for WebStart?
    Thankful for pointers

    At what point do you want to treat different users
    differently (like allowing access to different apps)?
    Possible points could be:
    - at the webserver level (different download pages,
    that are access protected)
    - different Web Start application caches (as far
    as I understand under Win32 all users share
    one cache - but this seems subject to some
    property configuration in WebStart)
    - within the application (the app expecting different
    license keys, passwords or such)
    - within Web Start (Web Start utility asks for password,
    this could be achieved by writing a custom jnlp
    client - think openjnlp as example
    http://openjnlp.nanode.org/)
    I think the first two options are not useful, as
    users might get the application somewhere else
    and just copy it onto their box - this is also
    true for the last option.
    So I would put access control into the applications
    themselves.

  • How can I have different access control for the guest network (different than the main network)?

    I am trying to control my main wireless network with access control via mac id with no password. I wanted a separate guest network with password access and no access control. However, the only way that the guest network works is if I specify unlimited access as the default. Is what I am trying to do possible.

    I am trying to control my main wireless network with access control via mac id with no password.
    Definitely not a recommended method for security. MAC addresses are easily cloned by anyone who wants to do so with free tools available on the Internet. An unwanted guest will be on your network in less than a minute if they want to be.
    Strongly recommend that you use WPA2 Personal security with a non-dictionary password to protect your network.
    I wanted a separate guest network with password access and no access control. However, the only way that the guest network works is if I specify unlimited access as the default. Is what I am trying to do possible.
    Unfortunately, Apple does not allow separate Access Control for the "main" and "guest" networks. It's all or nothing, I am afraid.
    Likely, the  "best" way to set up Access Control is change the default rule to No Access, Then you will need to enter in the details for every device that you want to allow to connect for both the "main" and "guest" networks with the time limits for each device.

  • How to give a user access to just 2 fields in a user account properties

    Is it possible to create a user that has basic access rights in Active Directory but give it access to just the users name and telephone number of every user in Active Directory?  We have a Windows 2003 AD level at the moment.
    Thanks.

    Sure, by default a user you create in Active Directory is going to be apart of Domain Users.  This user will be an Authenticated User and will have Read permissions over all other users in AD, meaning they can see all other users information.
    If you want you can delegate control to a user or group and limit or expand what the user can do.  For instance you can right-click the name of your domain in Active Directory Users and Computers and click Delegate Control then click Next.  Click
    add to add a user or test user, then click Next. Click the Create a custom task to delegate then click Next, select Only the following objects in the folder, then select account objects and click Next. Click Property-specific and there you'll find things like
    Read displayName.  Check Read displayName and Click next then click Finish.  So you've delegated that to that user or group. 
    How to Delegate Basic Server Administration To Junior Administrators. 
    http://support.microsoft.com/kb/555986
    Best Practices for Delegating Active Directory Administration 
    http://technet.microsoft.com/en-us/library/cc773318%28v=ws.10%29.aspx
    If it answered your question, remember to “Mark as Answer”.
    If you found this post helpful, please “Vote as Helpful”.
    Postings are provided “AS IS” with no warranties, and confers no rights.
    Active Directory: Ultimate Reading Collection

  • How to restrice ananymous user access to portal link /irj/servlet/prt/portal/prtroot/com.sap.portal.navigation.portallauncher.default?

    Hi experts,
    We had an issue with portal access. I wonder if portal is venerable for security threats?
    Could you please let me how to restrict the unauthorized users (anonymous user) to the portal URL.
    https://HOST:50001//irj/servlet/prt/portal/prtroot/com.sap.portal.navigation.portallauncher.default .
    Appreciate your help.
    Regards
    Maruti

    Hi Maruti,
    Hope you are doing good.
    Can't you just amend the portal permissions so that this access is not possible.
    The PCD location should be:
    com.sap.portal.system/security/sap.com/NetWeaver.Portal/no_safety/com.sap.portal.navigation.portallauncher....
    Hope this helps.
    Thank you and have a nice day!
    Kind Regards,
    Hemanth

Maybe you are looking for