<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: How to implement column level security? in Administrative Discussions</title>
    <link>https://community.incorta.com/t5/administrative-discussions/how-to-implement-column-level-security/m-p/1572#M19</link>
    <description>&lt;P&gt;Can you show us how to create the session variable&amp;nbsp;&lt;SPAN&gt;$executive_managerial_group based on the Group in Incorta? Say, there is a Group (executive_managerial_group) with some users.&lt;/SPAN&gt;&lt;/P&gt;</description>
    <pubDate>Tue, 17 May 2022 14:46:47 GMT</pubDate>
    <dc:creator>AEliza</dc:creator>
    <dc:date>2022-05-17T14:46:47Z</dc:date>
    <item>
      <title>How to implement column level security?</title>
      <link>https://community.incorta.com/t5/administrative-discussions/how-to-implement-column-level-security/m-p/493#M8</link>
      <description>&lt;P&gt;&lt;SPAN&gt;There are some business sensitive columns that only certain users should have access to. &amp;nbsp;&amp;nbsp;For example, only show salary information to executives or&amp;nbsp;users&amp;nbsp;at a&amp;nbsp;certain management level or above. For all other users trying to build insights using this column, mask the data. How do we implement this in Incorta?&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 16 Mar 2022 15:39:44 GMT</pubDate>
      <guid>https://community.incorta.com/t5/administrative-discussions/how-to-implement-column-level-security/m-p/493#M8</guid>
      <dc:creator>KailaT</dc:creator>
      <dc:date>2022-03-16T15:39:44Z</dc:date>
    </item>
    <item>
      <title>Re: How to implement column level security?</title>
      <link>https://community.incorta.com/t5/administrative-discussions/how-to-implement-column-level-security/m-p/494#M9</link>
      <description>&lt;P&gt;You can implement column level security in Incorta by using session variables and formulas. First, create the session variables to identify the groups that the logged in user belongs to. Next, create a formula with the sensitive column and the rule to apply for insight and dashboard consumption. Here is one sample formula for the use case referenced above.&lt;/P&gt;&lt;P&gt;IF($executive_managerial_group = 'Y', HR.Employees.Salary, '******')&lt;/P&gt;</description>
      <pubDate>Wed, 16 Mar 2022 15:41:55 GMT</pubDate>
      <guid>https://community.incorta.com/t5/administrative-discussions/how-to-implement-column-level-security/m-p/494#M9</guid>
      <dc:creator>awarrier</dc:creator>
      <dc:date>2022-03-16T15:41:55Z</dc:date>
    </item>
    <item>
      <title>Re: How to implement column level security?</title>
      <link>https://community.incorta.com/t5/administrative-discussions/how-to-implement-column-level-security/m-p/1572#M19</link>
      <description>&lt;P&gt;Can you show us how to create the session variable&amp;nbsp;&lt;SPAN&gt;$executive_managerial_group based on the Group in Incorta? Say, there is a Group (executive_managerial_group) with some users.&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 17 May 2022 14:46:47 GMT</pubDate>
      <guid>https://community.incorta.com/t5/administrative-discussions/how-to-implement-column-level-security/m-p/1572#M19</guid>
      <dc:creator>AEliza</dc:creator>
      <dc:date>2022-05-17T14:46:47Z</dc:date>
    </item>
    <item>
      <title>Re: How to implement column level security?</title>
      <link>https://community.incorta.com/t5/administrative-discussions/how-to-implement-column-level-security/m-p/1574#M20</link>
      <description>&lt;P&gt;HI&amp;nbsp;&lt;a href="https://community.incorta.com/t5/user/viewprofilepage/user-id/350"&gt;@AEliza&lt;/a&gt;&amp;nbsp;-&amp;nbsp;&lt;/P&gt;
&lt;P&gt;If you're looking to query against Incorta, you can use the following set of cascading logic-&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="JoeM_0-1652800759845.png" style="width: 400px;"&gt;&lt;img src="https://community.incorta.com/t5/image/serverpage/image-id/941iB4AC273B53C7353E/image-size/medium?v=v2&amp;amp;px=400" role="button" title="JoeM_0-1652800759845.png" alt="JoeM_0-1652800759845.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;First, let's find out tenant ID.&lt;/P&gt;
&lt;P&gt;$ivar_getTentantID&lt;/P&gt;
&lt;LI-CODE lang="markup"&gt;queryDistinct(
    sch_IncortaMetadata.Tenant.ID,
    sch_IncortaMetadata.Tenant.Name = 'Your tenant name'
)&lt;/LI-CODE&gt;
&lt;P&gt;The retrieve all groups from the tenant.&lt;/P&gt;
&lt;P&gt;$ivar_get_groupid&lt;/P&gt;
&lt;LI-CODE lang="markup"&gt;querydistinct(
     sch_IncortaMetadata.Group.ID,
     sch_IncortaMetadata.Group.Name = 'executive_managerial_group',
     sch_IncortaMetadara.Group.TenantID = $ivar_getTentantID
)&lt;/LI-CODE&gt;
&lt;P&gt;Once I create a session variable that finds the group ids, I write another session variable to return users within the group:&lt;/P&gt;
&lt;P&gt;$ivar_get_userid&lt;/P&gt;
&lt;LI-CODE lang="markup"&gt;query(
    sch_IncortaMetadata.group_user.userid,
    sch_IncortaMetadata.group_user.group_id = $ivar_get_groupid&lt;/LI-CODE&gt;
&lt;P&gt;then next&lt;/P&gt;
&lt;P&gt;&amp;nbsp;$ivar_get_username&lt;/P&gt;
&lt;LI-CODE lang="markup"&gt;query(
   sch_IncortaMetadata.User.Loginname,
   inlist(sch_IncortaMetadata.UserID, $ivar_get_userid)
)&lt;/LI-CODE&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 17 May 2022 15:19:42 GMT</pubDate>
      <guid>https://community.incorta.com/t5/administrative-discussions/how-to-implement-column-level-security/m-p/1574#M20</guid>
      <dc:creator>JoeM</dc:creator>
      <dc:date>2022-05-17T15:19:42Z</dc:date>
    </item>
    <item>
      <title>Re: How to implement column level security?</title>
      <link>https://community.incorta.com/t5/administrative-discussions/how-to-implement-column-level-security/m-p/4696#M191</link>
      <description>&lt;P&gt;Hi taking this a step further could you mask the column except for certain groups by data in the row? What i am looking for is to mask the employee column when a year is greater than 2018 (for example)&lt;/P&gt;</description>
      <pubDate>Sun, 16 Jul 2023 20:08:42 GMT</pubDate>
      <guid>https://community.incorta.com/t5/administrative-discussions/how-to-implement-column-level-security/m-p/4696#M191</guid>
      <dc:creator>Adetweiler</dc:creator>
      <dc:date>2023-07-16T20:08:42Z</dc:date>
    </item>
  </channel>
</rss>

