IRecruitment - Restrict Vacancy Access by Organization
All,
I have a requirement where HR Managers for the company should see the vacancies for their organizations only. How could i design a custom security profile to acieve this ?
As I understand there is no seeded facility available for this.
Regards,
Sabya
Hi Ivan,
I have tried what is there in note 307681.1. It works fine in that context, which is "Managers should see vacancies for which they are manager".
But my requirement is bit different. We have organization hierarchy. I want to restrict vacancy to person by organization hierachy. i.e if V1 is belonging to O1 then a person can see all the vacancies which belongs to O1 and its child hierachy.
Similar Messages
-
how can I set a third party application to access my organizations intranet through my organizations network . I am using blackberry bold 9700 OS 6
Hi deepajithesh
This feature is not available. Applications access the BlackBerry Network using the connection to BIS.
Thanks
-CptS
Come follow your BlackBerry Technical Team on twitter! @BlackBerryHelp
Be sure to click Kudos! for those who have helped you.Click Solution? for posts that have solved your issue(s)! -
How to restrict AS02 access to certain fields only
How to restrict AS02 (Asset Master Record) access to certain fields only. Currently when you assigned AS02 to a certain user, this will enable the user to change all the fields in the asset master record. Suppose i want only the user to restrict the access to certain field eg.NDJAR (Life in Yrs).
Thanks for your inputs.
Regards,
Roberthello,
basis has to assign the proper activity with object A_S_ANLKL. in this case they have to allow activity 03 only with combination of Cocode,asset class. see some more details below.
This authorization object is the first part of the object "asset master record."
The definition at this level determines whether the user is authorized to process data in a given company code. The activity type for the transaction is also defined here. This authorization object is used for master data transactions, for the display of value fields, and for reporting.
Defined Fields
The following fields are assigned to the authorization object
Asset class (specified by entering a value in the pop-up window)
Company code (specified by entering a value in the pop-up window)
Activity type - there are three different activity types:
01 = Create
02 = Change (including blocking and deleting)
03 = Display -
How to restrict the access of FUNCTION MODULE for others after transporting
A Function module needs to be executed in one server and should be executed when others try to access it.how to restrict the access of FM to one application server after being transported using SM59.
issue resolved
-
I have a requirement to restrict the access of "InPlaceRecordsListSettings.aspx" and "InPlaceRecordsSettings.aspx" pages for some of the users and allow the access for some of the users.
I have applied the below code on the web.config file but this modification impacting only on the web application level not on the site collection and sub site level.
<location path="_layouts/15/InPlaceRecordsSettings.aspx">
<system.web>
<authorization>
<deny users="*" />
</authorization>
</system.web>
</location>
<location path="_layouts/15/InPlaceRecordsListSettings.aspx">
<system.web>
<authorization>
<deny users="*" />
</authorization>
</system.web>
</location>
When I tried the access on
:<portno>/sites/<scname>/_layouts/15/InPlaceRecordsSettings.aspx">http://<servername>:<portno>/sites/<scname>/_layouts/15/InPlaceRecordsSettings.aspx page allowed the access for all users.
Please suggest the possible solution to restrict the access of "InPlaceRecordsListSettings.aspx" and "InPlaceRecordsSettings.aspx" pages on SharePoint2013.
Thanks
RamasubbuYou can't do it from OOTB.
_layout folder is accessible to the users if they have read access in any of the site even subsite.
You can modify *.aspx file, add your custom control which will check user.
[custom.development] -
Create user with DBA privileges with a restriction to access user data
Hi
I need to create a user with all DBA privileges with a restriction to access all user schemas
Thanks,
BalajiUse Database Vault - http://download.oracle.com/docs/cd/E11882_01/server.112/e16544/toc.htm
HTH
Srini -
Unable to use copied iRecruitment Create Vacancy Functions
Hi,
I am trying to create 2 versions of the iRecruitment 'Create Vacancy' process, so I want to duplicate the standard functions and do function level personalizations to amend my new process (i.e. remove some of the train steps and others). I have created new functions, menus, permissions, and set profile options, but cannot invoke the copied functions.
I will simplify the issue below with limited setup to see if anyone else can help:
Seeded Create Vacancy Process:
Navigation - iRecruitment Recruiter > iRecruitment Home > New Vacancy (sidebar link) > Create vacancy page
Click personalize this page - the function context is:
Irc Vacancy Details - Create (IRC_VAC_DETS_NEW)
I want to have a duplicate process that invokes a copied function to allow me to make function level personalizations on this process.
Setup steps taken:
Make copy of function
XX_IRC_VAC_DETS_NEW
XX Irc Vacancy Details - Create
Parameters: OAFunc=XX_IRC_VAC_DETS_NEW&pAMETranType=IRCVACAPPROVAL&pAMEAppId=800&pProcessName=HR_GENERIC_APPROVAL_PRC&pItemType=HRSSA&pCalledFrom=XX_IRC_VAC_DETS_NEW&pApprovalReqd=YD&pNtfSubMsg=IRC_VACANCY_APPROVAL_NEW&pConcAction=N
Web HTML:
OA.jsp?page=/oracle/apps/irc/vacancy/webui/VacNewDetsPG&akRegionApplicationId=821
Add to IRC Manager Functions Menu menu (IRC_MANAGER_OTHER)
This original function was invoked when clicking the function Irc CM Home Page Create Vacancy (IRC_CM_HOME_CREATE_VACANCY) from the IRC Manager Side Nav (IRC_MANAGER_SIDE_NAV) menu, so also need to duplicate that function. However, this function calls another function IRC_VAC_NEW_LAUNCH_WF, so I need to duplicate that one as well:
XX_IRC_CM_HOME_CREATE_VACANCY
XX Irc CM Home Page Create Vacancy
Parameters:
Web HTML:
javascript:void submitForm('DefaultFormName',1,{IrcAction:'createVacancy',IrcActionType:'Link',IrcActionValue:'XX_IRC_VAC_NEW_LAUNCH_WF',IrcFunction:'IRC_CM_VACANCY_SEARCH'})
Add the copied function to IRC Manager Side Nav (IRC_MANAGER_SIDE_NAV) menu giving the prompt:
"New Vacancy 2"
IRC_VAC_NEW_LAUNCH_WF
Irc Vacancy New Launch Workflow
Parameters:
OASF=XX_IRC_VAC_NEW_LAUNCH_WF&OAHP=IRC_MANAGER_APPL
Web HTML:
OA.jsp?page=/oracle/apps/irc/vacancy/webui/ReqLaunchWfPG&akRegionApplicationId=821&WFItemType=IRC_WF&WFProcess=XX_IRC_VACANCY_NEW_V3
Add the copied function to IRC Manager Functions Menu (IRC_MANAGER_OTHER)
This final function launches a workflow process, so I have also copied that (IRC_VACANCY_NEW_V3 --> XX_IRC_VACANCY_NEW_V3) and referenced it in the function.
In Workflow builder I have amended the 'Vacancy New Details Page Function' node attribute in the workflow to the first copied function: XX_IRC_VAC_DETS_NEW
This is seemingly all the setup necessary to invoke the copied function from the IRC Manager Side Nav (IRC_MANAGER_SIDE_NAV) menu, however when running through the system, the seeded function is still called:
Navigation - iRecruitment Recruiter > iRecruitment Home > New Vacancy 2 (new sidebar link) > Create vacancy page
Click personalize this page - the function context is still:
Irc Vacancy Details - Create (IRC_VAC_DETS_NEW)
Can anyone help? Has anyone managed to use a copied function / copied workflow in iRecruitment Create Vacancy?
Regards,
MichaelHi,
We have not tried to do this but I believe this is possible. I had several conversations with Oracle support about the menus/functions delivered and how changes keep affecting our system so often and the suggested approach was to copy the functions/menus so that there is no interference from what oracle might deliver in future. And in that sense, yes the copy functions should work.
I went through your post carefully and could not pick any obvious steps missed. Please ask your DBA team to bounce the concurrent tier also on your apps server/database along with a restart of all services and see if the context still switches back. However, as part of some new development, I will be doing something similar in iRec and will keep this thread updated with what I find.
Sorry, couldn't be of more help.
Regards,
Vinayaka -
How to restrict user access in Oracle Application Server 10g (9.0.4)?
Can anybody please let me know how to restrict user access in 10g AS? To be specific, how to allow http requests from specific IPs only?
Hi,
You have to edit httpd.conf and modify acces rights for each protected directory
e.g.
<Directory /var/www/sub/payroll/>
Order allow,deny
Allow from 192.168.1.0/24
</Directory>
then you have to restart Oracle HTTP Server
jm-- -
Restrict Delete Access in FBV0 for Parked documents
We are havng an issue for restricting users from deleting Parked Documents of other users in FBV0. Is there a way to restrict Delete access to only documents a user created themselves?
Thanks
ChazHi Chaz
I don't think that will be possible unless you implement a validation using user exit
Write a validation in OB28 using RGGBR000 user exit to validate the USNAM field
Br. Ajay M -
Hide / Remove access to Organization Configuration in Exchange Management console Ex 2010
Hello,
I am planning to give EMC access to helpdesk and modified Helpdesk Role so that they have Mail Recipient Creation and Mail Recipents Assigned roles.
Helpdesk are able to created new and also modify exixiting mail enabled objects fine.
My boss wants me Hide / Remove access to Organization Configuration in Exchange Management console Ex 2010 as they are able to edit Client access policies. Is this possible ?
Thanks,
Ne0Hi,
Please use the following cmdlet to check the permission of Helpdesk support group on all management roles.
Get-ManagementRoleAssignment -GetEffectiveUsers | Where { $_.EffectiveUserName -Eq "Helpdesk support group" }
Then you can remove some unnecessary permissions of the Helpdesk support group.
Hope it helps.
If there is any problem, please feel free to let me know.
Best regards,
Amy
Amy Wang
TechNet Community Support -
Restrict member access in POV member selection
Hello all,
I wonder if there is a way to restrict access to certain members in Smart View's POV manager (member selection tool)? For example if a user is assigned a filter in Essbase that restricts his access to an Entity "A", he should not be able to see/select that entity in the member selection in Smart View.
I did some research and browsed the guides but could not find anything related to this special requirement.
Highly appreciate any thoughts.
Thanks for your help and time.I have implemented MetaRead as the "standard" for users with read only access at several clients, as most people prefer to see only what they have access to. A good example is European users, don't need to see Asian countries in their geography rollup and vice versa.
It also makes training easier as you don't have to deal with the questions, why can I see Germany/Thailand if I can't see any data.
I suggested FR as an option as once the user has chosen their POV for the first time, it will follow them whenever they open a subsequent report, so they don't have to worry about choosing it.
Although you do lose some ad-hoc abilities with FR - that you can mitigate through the use of expansion on rows/columns. Also the POV is per data source, so if you wished to migrate to new cube for a new financial year, then the POV would need to be chosen again.
The other advantage with FR is you can distribute the same report and have many users, with differing access see different data through their POV and access rights. With Smart View, users would need to chose their POV every time they opened a newly distributed report.
Hope this helps - let me know if you have further questions/thoughts.
Cheers, Iain -
I am using pse 11 0n windows vista for years and it has suddenly started freezing on starting, I am now unable to access the organizer it freezes on the blue screen, the editor can be opened. Have removed and reinstalled but is still occurring. Have changed the files as suggested, am unable to open as administrator
'The installer has insufficient privileges to modify this file C:\Program Files (x86)\Common Files\Apple\Apple Application Support\Web kit.resources\inspector\Images\Spinner Inactive Selected.gif.'
That one's consistent with disk/file damage. The first thing I'd try with that is running a disk check (chkdsk) over your C drive.
XP instructions in the following document: How to perform disk error checking in Windows XP
Vista instructions in the following document: Check your hard disk for errors
Windows 7 instructions in the following document: How to use CHKDSK (Check Disk)
Select both Automatically fix file system errors and Scan for and attempt recovery of bad sectors, or use chkdsk /r (depending on which way you decide to go about doing this). You'll almost certainly have to schedule the chkdsk to run on startup. The scan should take quite a while ... if it quits after a few minutes or seconds, something's interfering with the scan.
Does the chkdsk find/repair any damage? If so, can you get an install to go through properly afterwards? -
CRM: PFCG Roles restricted based on Sales Organization
Hi,
I have a requirement in SAP CRM 7.0 to create roles restricted based on Sales Organization(locations). We have two Sales Organization XXX and YYY, for which users need to be restricted. I have used the following objects for this regard.
CRM_ORD_OP, CRM_ORD_LP, CRM_ORD_PR, CRM_ORD_OE, CRM_BP_SA
Every user has assigned a sales role in which the above objects are deactivated and separate roles with values to the objects, with respective Sales Org values for the objects CRM_ORD_OE, CRM_BP_SA been provided. I have assigned these roles to respective users (User A with XXX, User B with YYY) based on their sales org locations. These users are positioned in the Organizational Model (PPOMA_CRM) under their respective Sales groups as per the requirement for the object CRM_ORD_LP, and authorization to this object is restricted to A for CHECK_LEV (Your Own Sales Organization). We use * for the objects CRM_ORD_OP and CRM_ORD_PR, as we do not control these.
After restricting all these, we do not find that the result not appearing as we expect, that is, restricting the sales organization data. We need all accounts, all activities, all opportunities, all leads, all campaigns etc. should be restricted by Sales Org, but when we search for accounts, activities, opportunities, leads, campaigns, we get result list with all data without any restrictions. I even checked the following forum, http://forums.sdn.sap.com/thread.jspa?threadID=1579211, which talks about the same kind of issue, but as I have already using the same objects for the restriction, it didnt help me much. I tried deactivating object CRM_BP_SA as it is not discussed on the forum, also tried CHECK_LEV=A,B,C,D,E for object CRM_ORD_LP, but all results the same.
Additional Info: When tried to create a project, with user A who is authorized for XXX, normally it would pick up the Sales Area Data for the project from the user (meaning User A from the XXX Sales Org.), but I get an error message: Enter a sales org, enter a dist. channel and enter an org unit etc. Even when I search for leads, it displays a list of data, when I click on any, it issues the error message: Enter a sales org, enter a dist. channel and enter an org unit (Sales) etc
Is that we miss any object restriction that is not restricting these objects properly or is it any customization missing? Please advice.
Thanks in advance.
Regards,
Shahul Hameed M
BASIS ConsultantHi Shahul,
I have a similar requirement as of yours. I have maintained auth values, in role as below:
CRM_ORD_LP
03 ACTVT
A CHECK_LEV
* PR_TYPE
CRM_ORD_OE
03 ACTVT
11 DIS_CHANNE ( the user is assigned to this dstrbtion channel in org structure)
SALES_GROU
SALES_OFFI
SO1 SALES_ORG
SERVICE_OR ( the user is assigned to this sales org in org structure)
And, when I try to display the LEADs in CRM UI ...I still get the display of LEADs belonging to all sales orgs.
And my trace record for CRM_ORD_LP is....
CHECK_LEV ' blank '
PR_TYPE LEAD
ACTVT 03
that means, it is not considering the auth value ' A ' for auth field CHECK_LEV
Could you please let me know ...how you have achieved this restriction . Is there anything , i m missing here?
Thank You -
I imported my favorites from Internet Explorer, but how do I display "favorites" in the tool bar so I can access and organize them?
It did merge them after a fashion, glad I took a backup first even if I did only perhaps create 3 or 4 bookmarks today. So if I have bookmark separators, it's going to figure out which group to put them in (no way). Anyway I thought they would just go down to the bottom of the bookmarks menu like the other method, like when I export and import bookmarks in Firefox where they do go to the end of the Bookmarks Menu folder and would simply delete one folder.
Anyway this would not be typical because I don't want any bookmarks from IE. -
Restricting Wireless Access using ACS 3.3
We are currently running ACS 3.3 and I am trying to figure out how to restrict Wireless access to specific user groups. Our current setting is using PEAP and ACS as the Radius. Our user database is mapped to Windows 2003 AD. I've got the PEAP working and the radius authentication is also working but I cannot seem to figure out how to restrict the wireless access to specific Windows/ACS groups.
ErikHi,
On ACS 3.3.x You can certinly achive this, al you have to do is configure NAR( Network Access Restriction) Here is the link which should provide you further informatio on it.
http://www.cisco.com/en/US/products/sw/secursw/ps2086/products_white_paper09186a00801a8fd0.shtml
-Parm
Maybe you are looking for
-
LogicPro 8 "Error while trying to synchronize Audio and MIDI"
Hello, My rig: Dual 2.5 GHz PowerPC G5 3.5 GB DDR SDRAM. OS X 10.4.11. Logic Pro 8.0.2, Motu 828mkII interface, emagic Unitor 8 midi interface, Makie Control Universal, 7200rpm Firewire 800 Hard drives. I Just launched a Logic Pro 8 session that was
-
My email is not working properly, I can receive emails but I cannot send them. Every time I try to send an email an error message appear saying "The recipient was rejected by the server because it does not allow relaying". There used to be no problem
-
Deauthenticate User on WLC w/ ISE for Testing
ISE v1.1.1.268 WLC v7.2.110.0 We have a wireless deployment using ISE and WLC's configure for LWA. Seeing that CWA has fewer "moving parts" I was trying to migrate to that. When testing my deployment under LWA, I could de-authenticate a user simply b
-
Copying MP3 to CD (re-recording to same CD)
My wife's car has an MP3 player and I create MP3 music for her and burn to CD. If that CD is not full and I wanted to burn more onto it, is it possible to use iTunes or must I purchase another program to do so? I just hate to waste 'space' on the cd
-
Building mplayer-svn using internal ffmpeg-svn libraries [SOLVED]
Yeah, I know that a bunch of us are having errors building mplayer-svn against ffmpeg-svn internal libraries. The error: libvo/vo_yuv4mpeg.o: In function `flip_page': vo_yuv4mpeg.c:(.text+0x694): undefined reference to `rgb24toyv12' vo_yuv4mpeg.c:(.t