SlideShare a Scribd company logo
1 of 39
29 Tips for Implementing
Lawson Security
What you haven’t been told yet
Are you on Lawson
Security?
32%
53%
15%
Poll
Lawson Sec LAUA Combo
•50% Planning
•30% Development
•20% Testing
#1
• 1-3 months (2 month average)
#2
Plan Accordingly
Scripts - 1 year later (23
clients)
5%
85%
10%
Poll
Satisfied Dissatisfied Stopped Using
#3
HRGENCLASS
PA52 PA100
HR07
HR04
HR01
HR00
HR09
HR10
HR11
PR12
PR13
PR51
PR52
PR67
PR68
HR12
User Security Class Secured Objects
LAUA Security#4
User Security Roles
DATAACCESS
Security Classes
PRADROLE
HRGENROLE
HRSETUPCLASS
PAACTCLASS
HR07HR04HR01HR00
PRACCESSCLASS
PR12 PR13 PR51 PR52 PR67
PA52
PR68
PA100
HREMPCLASS
HR09HR10 HR11 HR12
LSF Security
….
The Hierarchy (in one profile)
•User has many
oRoles have many
•Security Classes have many
oRules
AUTOMATED
CONVERSTION
#5
What can you secure?
• Online: Online Screens (e.g. HR11, PR13, GL00, PO20…)
• Batch: Batch programs (e.g. PA100, HR211, PR198, GL190…)
• Files: Database Tables
• Elements … Not in this presentation
• Element Groups… Not in this presentation
• Data Source: The Productline
• Securable Type
o Form
o Program
o Table
#6
Rule?
• Grant All Access
• Deny Any Access
• Unconditional Access to Action
• Conditional Rule Access
#7
Menus
• Add/Edit Users
• Add Roles to users
• Manage identities
• Add users to groups
• Add/Edit security Classes
• Assign a Class to A Role
• Create an run reports
#8
#9
Check LS
Dealing with Tokens
#10
The Tools
• RM Administrator
o Add/Edit Groups
o Add/Edit Roles
• Security Administrator
o Manage Security Profiles
o Add/Edit Security classes
o Add/Edit Security rules
o Assign classes to roles
o Manage user profiles
o Run security reports
o Manage security settings
#11
Best Trick
• “Skip to End”; “Back”; Check “Description”; Next
#12
Not so obvious
• To grant access to a securable object like a screen,
a batch job, or a database table, you need to
grant access to the productline and the system
code it resides in.
• In order to grant access to a specific screen token
(like HR11.1). You also need to grant access to the
screen (HR11). The fields and tabs in the token are
automatically granted unless you deny them
specifically.
#13
Data Can Hide
• Drop Downs
• Drills
• Report Outputs
• LBI
• ProcessFlow Inbasket
#14
Drop downs and Drills
• Must grant access to the tables the select or drill
draws data from.
• Table information can be found in the <system
code>.or and <System Code>.sr files in
$LAWDIR/Productline/??src
#15
Contradictions
• LSF Security is grant based. If in any of assigned
classes access is granted then the user has access.
EVEN IF it’s explicitly denied in another one of the
user’s classes.
• ESS/MSS Can be a but of a chore with crazy rules
#16
Naming Convention
Come up with a good naming convention for roles
and classes before you do anything else. These should
make sense at a glance and be easy to classify and
sorting them should also group them.
#17
Order
• Determine Tasks each role needs to perform (These
will be your security classes)
• Determine what each task is composed of (These
will be your rules)
• Assign classes to roles
• Assign roles to users
• Do one user group at a time, not all at once
#18
Test Ad Nauseam
#19
Have users test with scripts
#20
Divide and Conquer
#21
Timing
#22
Caching
• Perform an IOSCacheRefresh
• Clear all your browsing history and restart the
browser
• Remove Security Cache
• Reduce Caching Interval
• Wait up to 15 minutes
• Try it in LID
#23
Training
• Get at least 2 people trained early on
• Infor Class (? Days)
• We can help (2 Days)
• Online resources
#24
Documentation
• Use Excel to plan and document changes often
#25
KISS
• Don’t over complicate the rules to begin with
• Pick major roles and classes and only add when it’s
impossible to reuse
• Pick a simple, extensible naming convention
#26
Plan for trained support
• Issues with logging in
• Issues with screen access
• Issues with functionality
• Issues with report access
#27
Free Education
www.nogalis.com/education
#28
#29
Upcoming Events
Oct 28
www.nogalis.com/education
Lawson 10x Upgrade Bootcamp 2.0
Aug 14
Aug 21
Upgrade to IPA Made Easy
LBI Upgrade; An Easy Home-run
Bootcamp
93% Satisfaction Rating
www.nogalis.com/bootcamp
“I was thoroughly impressed by the event. It was well-attended by both onsite
attendees and webinar attendees. The attention to detail was very impressive.
From the tickets, the online video and audio logistics, a dedicated help desk for
webinar attendees, the food and beverages, the Infor lanyards, the information
binders for onsite attendees, the electronic information for webinar attendees,
on and on in every aspect the event was professional, high-quality very
polished and infused with enthusiasm and creativity. The onsite attendees
were attentive and engaged throughout the day. Considering the event lasted
several hours, that attentiveness is a testament to the event's value to the onsite
attendees and webinar attendees.
If the Nogalis Infor 10x Upgrade Bootcamp event is indicative of the value that
Nogalis provides to Infor Lawson customers, then those customers are in good
hands and will be well-served when they engage with Nogalis, Inc.”
Regards,
Del Dehn www.nogalis.com/bootcamp
Bootcamp
www.nogalis.com/bootcamp
Tuition:
Early Bird: $295 (Ends Sept 20th, 2014)
Onsite: $495 (100% money back guarantee)
Virtual: $395 (100% money back guarantee)
TODAY ONLY $275 use promo code SECURITY
@nogalisinc

More Related Content

Recently uploaded

Odoo 14 - eLearning Module In Odoo 14 Enterprise
Odoo 14 - eLearning Module In Odoo 14 EnterpriseOdoo 14 - eLearning Module In Odoo 14 Enterprise
Odoo 14 - eLearning Module In Odoo 14 Enterprisepreethippts
 
Introduction Computer Science - Software Design.pdf
Introduction Computer Science - Software Design.pdfIntroduction Computer Science - Software Design.pdf
Introduction Computer Science - Software Design.pdfFerryKemperman
 
Implementing Zero Trust strategy with Azure
Implementing Zero Trust strategy with AzureImplementing Zero Trust strategy with Azure
Implementing Zero Trust strategy with AzureDinusha Kumarasiri
 
PREDICTING RIVER WATER QUALITY ppt presentation
PREDICTING  RIVER  WATER QUALITY  ppt presentationPREDICTING  RIVER  WATER QUALITY  ppt presentation
PREDICTING RIVER WATER QUALITY ppt presentationvaddepallysandeep122
 
Machine Learning Software Engineering Patterns and Their Engineering
Machine Learning Software Engineering Patterns and Their EngineeringMachine Learning Software Engineering Patterns and Their Engineering
Machine Learning Software Engineering Patterns and Their EngineeringHironori Washizaki
 
Open Source Summit NA 2024: Open Source Cloud Costs - OpenCost's Impact on En...
Open Source Summit NA 2024: Open Source Cloud Costs - OpenCost's Impact on En...Open Source Summit NA 2024: Open Source Cloud Costs - OpenCost's Impact on En...
Open Source Summit NA 2024: Open Source Cloud Costs - OpenCost's Impact on En...Matt Ray
 
Taming Distributed Systems: Key Insights from Wix's Large-Scale Experience - ...
Taming Distributed Systems: Key Insights from Wix's Large-Scale Experience - ...Taming Distributed Systems: Key Insights from Wix's Large-Scale Experience - ...
Taming Distributed Systems: Key Insights from Wix's Large-Scale Experience - ...Natan Silnitsky
 
What is Fashion PLM and Why Do You Need It
What is Fashion PLM and Why Do You Need ItWhat is Fashion PLM and Why Do You Need It
What is Fashion PLM and Why Do You Need ItWave PLM
 
Cloud Data Center Network Construction - IEEE
Cloud Data Center Network Construction - IEEECloud Data Center Network Construction - IEEE
Cloud Data Center Network Construction - IEEEVICTOR MAESTRE RAMIREZ
 
Sending Calendar Invites on SES and Calendarsnack.pdf
Sending Calendar Invites on SES and Calendarsnack.pdfSending Calendar Invites on SES and Calendarsnack.pdf
Sending Calendar Invites on SES and Calendarsnack.pdf31events.com
 
Software Coding for software engineering
Software Coding for software engineeringSoftware Coding for software engineering
Software Coding for software engineeringssuserb3a23b
 
How to submit a standout Adobe Champion Application
How to submit a standout Adobe Champion ApplicationHow to submit a standout Adobe Champion Application
How to submit a standout Adobe Champion ApplicationBradBedford3
 
Maximizing Efficiency and Profitability with OnePlan’s Professional Service A...
Maximizing Efficiency and Profitability with OnePlan’s Professional Service A...Maximizing Efficiency and Profitability with OnePlan’s Professional Service A...
Maximizing Efficiency and Profitability with OnePlan’s Professional Service A...OnePlan Solutions
 
Cyber security and its impact on E commerce
Cyber security and its impact on E commerceCyber security and its impact on E commerce
Cyber security and its impact on E commercemanigoyal112
 
Ahmed Motair CV April 2024 (Senior SW Developer)
Ahmed Motair CV April 2024 (Senior SW Developer)Ahmed Motair CV April 2024 (Senior SW Developer)
Ahmed Motair CV April 2024 (Senior SW Developer)Ahmed Mater
 
Balasore Best It Company|| Top 10 IT Company || Balasore Software company Odisha
Balasore Best It Company|| Top 10 IT Company || Balasore Software company OdishaBalasore Best It Company|| Top 10 IT Company || Balasore Software company Odisha
Balasore Best It Company|| Top 10 IT Company || Balasore Software company Odishasmiwainfosol
 
Alfresco TTL#157 - Troubleshooting Made Easy: Deciphering Alfresco mTLS Confi...
Alfresco TTL#157 - Troubleshooting Made Easy: Deciphering Alfresco mTLS Confi...Alfresco TTL#157 - Troubleshooting Made Easy: Deciphering Alfresco mTLS Confi...
Alfresco TTL#157 - Troubleshooting Made Easy: Deciphering Alfresco mTLS Confi...Angel Borroy López
 
KnowAPIs-UnknownPerf-jaxMainz-2024 (1).pptx
KnowAPIs-UnknownPerf-jaxMainz-2024 (1).pptxKnowAPIs-UnknownPerf-jaxMainz-2024 (1).pptx
KnowAPIs-UnknownPerf-jaxMainz-2024 (1).pptxTier1 app
 

Recently uploaded (20)

Odoo 14 - eLearning Module In Odoo 14 Enterprise
Odoo 14 - eLearning Module In Odoo 14 EnterpriseOdoo 14 - eLearning Module In Odoo 14 Enterprise
Odoo 14 - eLearning Module In Odoo 14 Enterprise
 
2.pdf Ejercicios de programación competitiva
2.pdf Ejercicios de programación competitiva2.pdf Ejercicios de programación competitiva
2.pdf Ejercicios de programación competitiva
 
Introduction Computer Science - Software Design.pdf
Introduction Computer Science - Software Design.pdfIntroduction Computer Science - Software Design.pdf
Introduction Computer Science - Software Design.pdf
 
Implementing Zero Trust strategy with Azure
Implementing Zero Trust strategy with AzureImplementing Zero Trust strategy with Azure
Implementing Zero Trust strategy with Azure
 
PREDICTING RIVER WATER QUALITY ppt presentation
PREDICTING  RIVER  WATER QUALITY  ppt presentationPREDICTING  RIVER  WATER QUALITY  ppt presentation
PREDICTING RIVER WATER QUALITY ppt presentation
 
Machine Learning Software Engineering Patterns and Their Engineering
Machine Learning Software Engineering Patterns and Their EngineeringMachine Learning Software Engineering Patterns and Their Engineering
Machine Learning Software Engineering Patterns and Their Engineering
 
Open Source Summit NA 2024: Open Source Cloud Costs - OpenCost's Impact on En...
Open Source Summit NA 2024: Open Source Cloud Costs - OpenCost's Impact on En...Open Source Summit NA 2024: Open Source Cloud Costs - OpenCost's Impact on En...
Open Source Summit NA 2024: Open Source Cloud Costs - OpenCost's Impact on En...
 
Taming Distributed Systems: Key Insights from Wix's Large-Scale Experience - ...
Taming Distributed Systems: Key Insights from Wix's Large-Scale Experience - ...Taming Distributed Systems: Key Insights from Wix's Large-Scale Experience - ...
Taming Distributed Systems: Key Insights from Wix's Large-Scale Experience - ...
 
What is Fashion PLM and Why Do You Need It
What is Fashion PLM and Why Do You Need ItWhat is Fashion PLM and Why Do You Need It
What is Fashion PLM and Why Do You Need It
 
Cloud Data Center Network Construction - IEEE
Cloud Data Center Network Construction - IEEECloud Data Center Network Construction - IEEE
Cloud Data Center Network Construction - IEEE
 
Sending Calendar Invites on SES and Calendarsnack.pdf
Sending Calendar Invites on SES and Calendarsnack.pdfSending Calendar Invites on SES and Calendarsnack.pdf
Sending Calendar Invites on SES and Calendarsnack.pdf
 
Software Coding for software engineering
Software Coding for software engineeringSoftware Coding for software engineering
Software Coding for software engineering
 
How to submit a standout Adobe Champion Application
How to submit a standout Adobe Champion ApplicationHow to submit a standout Adobe Champion Application
How to submit a standout Adobe Champion Application
 
Maximizing Efficiency and Profitability with OnePlan’s Professional Service A...
Maximizing Efficiency and Profitability with OnePlan’s Professional Service A...Maximizing Efficiency and Profitability with OnePlan’s Professional Service A...
Maximizing Efficiency and Profitability with OnePlan’s Professional Service A...
 
Cyber security and its impact on E commerce
Cyber security and its impact on E commerceCyber security and its impact on E commerce
Cyber security and its impact on E commerce
 
Ahmed Motair CV April 2024 (Senior SW Developer)
Ahmed Motair CV April 2024 (Senior SW Developer)Ahmed Motair CV April 2024 (Senior SW Developer)
Ahmed Motair CV April 2024 (Senior SW Developer)
 
Balasore Best It Company|| Top 10 IT Company || Balasore Software company Odisha
Balasore Best It Company|| Top 10 IT Company || Balasore Software company OdishaBalasore Best It Company|| Top 10 IT Company || Balasore Software company Odisha
Balasore Best It Company|| Top 10 IT Company || Balasore Software company Odisha
 
Alfresco TTL#157 - Troubleshooting Made Easy: Deciphering Alfresco mTLS Confi...
Alfresco TTL#157 - Troubleshooting Made Easy: Deciphering Alfresco mTLS Confi...Alfresco TTL#157 - Troubleshooting Made Easy: Deciphering Alfresco mTLS Confi...
Alfresco TTL#157 - Troubleshooting Made Easy: Deciphering Alfresco mTLS Confi...
 
Advantages of Odoo ERP 17 for Your Business
Advantages of Odoo ERP 17 for Your BusinessAdvantages of Odoo ERP 17 for Your Business
Advantages of Odoo ERP 17 for Your Business
 
KnowAPIs-UnknownPerf-jaxMainz-2024 (1).pptx
KnowAPIs-UnknownPerf-jaxMainz-2024 (1).pptxKnowAPIs-UnknownPerf-jaxMainz-2024 (1).pptx
KnowAPIs-UnknownPerf-jaxMainz-2024 (1).pptx
 

Featured

2024 State of Marketing Report – by Hubspot
2024 State of Marketing Report – by Hubspot2024 State of Marketing Report – by Hubspot
2024 State of Marketing Report – by HubspotMarius Sescu
 
Everything You Need To Know About ChatGPT
Everything You Need To Know About ChatGPTEverything You Need To Know About ChatGPT
Everything You Need To Know About ChatGPTExpeed Software
 
Product Design Trends in 2024 | Teenage Engineerings
Product Design Trends in 2024 | Teenage EngineeringsProduct Design Trends in 2024 | Teenage Engineerings
Product Design Trends in 2024 | Teenage EngineeringsPixeldarts
 
How Race, Age and Gender Shape Attitudes Towards Mental Health
How Race, Age and Gender Shape Attitudes Towards Mental HealthHow Race, Age and Gender Shape Attitudes Towards Mental Health
How Race, Age and Gender Shape Attitudes Towards Mental HealthThinkNow
 
AI Trends in Creative Operations 2024 by Artwork Flow.pdf
AI Trends in Creative Operations 2024 by Artwork Flow.pdfAI Trends in Creative Operations 2024 by Artwork Flow.pdf
AI Trends in Creative Operations 2024 by Artwork Flow.pdfmarketingartwork
 
PEPSICO Presentation to CAGNY Conference Feb 2024
PEPSICO Presentation to CAGNY Conference Feb 2024PEPSICO Presentation to CAGNY Conference Feb 2024
PEPSICO Presentation to CAGNY Conference Feb 2024Neil Kimberley
 
Content Methodology: A Best Practices Report (Webinar)
Content Methodology: A Best Practices Report (Webinar)Content Methodology: A Best Practices Report (Webinar)
Content Methodology: A Best Practices Report (Webinar)contently
 
How to Prepare For a Successful Job Search for 2024
How to Prepare For a Successful Job Search for 2024How to Prepare For a Successful Job Search for 2024
How to Prepare For a Successful Job Search for 2024Albert Qian
 
Social Media Marketing Trends 2024 // The Global Indie Insights
Social Media Marketing Trends 2024 // The Global Indie InsightsSocial Media Marketing Trends 2024 // The Global Indie Insights
Social Media Marketing Trends 2024 // The Global Indie InsightsKurio // The Social Media Age(ncy)
 
Trends In Paid Search: Navigating The Digital Landscape In 2024
Trends In Paid Search: Navigating The Digital Landscape In 2024Trends In Paid Search: Navigating The Digital Landscape In 2024
Trends In Paid Search: Navigating The Digital Landscape In 2024Search Engine Journal
 
5 Public speaking tips from TED - Visualized summary
5 Public speaking tips from TED - Visualized summary5 Public speaking tips from TED - Visualized summary
5 Public speaking tips from TED - Visualized summarySpeakerHub
 
ChatGPT and the Future of Work - Clark Boyd
ChatGPT and the Future of Work - Clark Boyd ChatGPT and the Future of Work - Clark Boyd
ChatGPT and the Future of Work - Clark Boyd Clark Boyd
 
Getting into the tech field. what next
Getting into the tech field. what next Getting into the tech field. what next
Getting into the tech field. what next Tessa Mero
 
Google's Just Not That Into You: Understanding Core Updates & Search Intent
Google's Just Not That Into You: Understanding Core Updates & Search IntentGoogle's Just Not That Into You: Understanding Core Updates & Search Intent
Google's Just Not That Into You: Understanding Core Updates & Search IntentLily Ray
 
Time Management & Productivity - Best Practices
Time Management & Productivity -  Best PracticesTime Management & Productivity -  Best Practices
Time Management & Productivity - Best PracticesVit Horky
 
The six step guide to practical project management
The six step guide to practical project managementThe six step guide to practical project management
The six step guide to practical project managementMindGenius
 
Beginners Guide to TikTok for Search - Rachel Pearson - We are Tilt __ Bright...
Beginners Guide to TikTok for Search - Rachel Pearson - We are Tilt __ Bright...Beginners Guide to TikTok for Search - Rachel Pearson - We are Tilt __ Bright...
Beginners Guide to TikTok for Search - Rachel Pearson - We are Tilt __ Bright...RachelPearson36
 

Featured (20)

2024 State of Marketing Report – by Hubspot
2024 State of Marketing Report – by Hubspot2024 State of Marketing Report – by Hubspot
2024 State of Marketing Report – by Hubspot
 
Everything You Need To Know About ChatGPT
Everything You Need To Know About ChatGPTEverything You Need To Know About ChatGPT
Everything You Need To Know About ChatGPT
 
Product Design Trends in 2024 | Teenage Engineerings
Product Design Trends in 2024 | Teenage EngineeringsProduct Design Trends in 2024 | Teenage Engineerings
Product Design Trends in 2024 | Teenage Engineerings
 
How Race, Age and Gender Shape Attitudes Towards Mental Health
How Race, Age and Gender Shape Attitudes Towards Mental HealthHow Race, Age and Gender Shape Attitudes Towards Mental Health
How Race, Age and Gender Shape Attitudes Towards Mental Health
 
AI Trends in Creative Operations 2024 by Artwork Flow.pdf
AI Trends in Creative Operations 2024 by Artwork Flow.pdfAI Trends in Creative Operations 2024 by Artwork Flow.pdf
AI Trends in Creative Operations 2024 by Artwork Flow.pdf
 
Skeleton Culture Code
Skeleton Culture CodeSkeleton Culture Code
Skeleton Culture Code
 
PEPSICO Presentation to CAGNY Conference Feb 2024
PEPSICO Presentation to CAGNY Conference Feb 2024PEPSICO Presentation to CAGNY Conference Feb 2024
PEPSICO Presentation to CAGNY Conference Feb 2024
 
Content Methodology: A Best Practices Report (Webinar)
Content Methodology: A Best Practices Report (Webinar)Content Methodology: A Best Practices Report (Webinar)
Content Methodology: A Best Practices Report (Webinar)
 
How to Prepare For a Successful Job Search for 2024
How to Prepare For a Successful Job Search for 2024How to Prepare For a Successful Job Search for 2024
How to Prepare For a Successful Job Search for 2024
 
Social Media Marketing Trends 2024 // The Global Indie Insights
Social Media Marketing Trends 2024 // The Global Indie InsightsSocial Media Marketing Trends 2024 // The Global Indie Insights
Social Media Marketing Trends 2024 // The Global Indie Insights
 
Trends In Paid Search: Navigating The Digital Landscape In 2024
Trends In Paid Search: Navigating The Digital Landscape In 2024Trends In Paid Search: Navigating The Digital Landscape In 2024
Trends In Paid Search: Navigating The Digital Landscape In 2024
 
5 Public speaking tips from TED - Visualized summary
5 Public speaking tips from TED - Visualized summary5 Public speaking tips from TED - Visualized summary
5 Public speaking tips from TED - Visualized summary
 
ChatGPT and the Future of Work - Clark Boyd
ChatGPT and the Future of Work - Clark Boyd ChatGPT and the Future of Work - Clark Boyd
ChatGPT and the Future of Work - Clark Boyd
 
Getting into the tech field. what next
Getting into the tech field. what next Getting into the tech field. what next
Getting into the tech field. what next
 
Google's Just Not That Into You: Understanding Core Updates & Search Intent
Google's Just Not That Into You: Understanding Core Updates & Search IntentGoogle's Just Not That Into You: Understanding Core Updates & Search Intent
Google's Just Not That Into You: Understanding Core Updates & Search Intent
 
How to have difficult conversations
How to have difficult conversations How to have difficult conversations
How to have difficult conversations
 
Introduction to Data Science
Introduction to Data ScienceIntroduction to Data Science
Introduction to Data Science
 
Time Management & Productivity - Best Practices
Time Management & Productivity -  Best PracticesTime Management & Productivity -  Best Practices
Time Management & Productivity - Best Practices
 
The six step guide to practical project management
The six step guide to practical project managementThe six step guide to practical project management
The six step guide to practical project management
 
Beginners Guide to TikTok for Search - Rachel Pearson - We are Tilt __ Bright...
Beginners Guide to TikTok for Search - Rachel Pearson - We are Tilt __ Bright...Beginners Guide to TikTok for Search - Rachel Pearson - We are Tilt __ Bright...
Beginners Guide to TikTok for Search - Rachel Pearson - We are Tilt __ Bright...
 

29 Tips For Implementing Lawson Security

  • 1. 29 Tips for Implementing Lawson Security What you haven’t been told yet
  • 2. Are you on Lawson Security? 32% 53% 15% Poll Lawson Sec LAUA Combo
  • 4. • 1-3 months (2 month average) #2 Plan Accordingly
  • 5. Scripts - 1 year later (23 clients) 5% 85% 10% Poll Satisfied Dissatisfied Stopped Using #3
  • 7. User Security Roles DATAACCESS Security Classes PRADROLE HRGENROLE HRSETUPCLASS PAACTCLASS HR07HR04HR01HR00 PRACCESSCLASS PR12 PR13 PR51 PR52 PR67 PA52 PR68 PA100 HREMPCLASS HR09HR10 HR11 HR12 LSF Security ….
  • 8. The Hierarchy (in one profile) •User has many oRoles have many •Security Classes have many oRules
  • 10.
  • 11. What can you secure? • Online: Online Screens (e.g. HR11, PR13, GL00, PO20…) • Batch: Batch programs (e.g. PA100, HR211, PR198, GL190…) • Files: Database Tables • Elements … Not in this presentation • Element Groups… Not in this presentation • Data Source: The Productline • Securable Type o Form o Program o Table #6
  • 12. Rule? • Grant All Access • Deny Any Access • Unconditional Access to Action • Conditional Rule Access #7
  • 13. Menus • Add/Edit Users • Add Roles to users • Manage identities • Add users to groups • Add/Edit security Classes • Assign a Class to A Role • Create an run reports #8
  • 16. The Tools • RM Administrator o Add/Edit Groups o Add/Edit Roles • Security Administrator o Manage Security Profiles o Add/Edit Security classes o Add/Edit Security rules o Assign classes to roles o Manage user profiles o Run security reports o Manage security settings #11
  • 17. Best Trick • “Skip to End”; “Back”; Check “Description”; Next #12
  • 18. Not so obvious • To grant access to a securable object like a screen, a batch job, or a database table, you need to grant access to the productline and the system code it resides in. • In order to grant access to a specific screen token (like HR11.1). You also need to grant access to the screen (HR11). The fields and tabs in the token are automatically granted unless you deny them specifically. #13
  • 19. Data Can Hide • Drop Downs • Drills • Report Outputs • LBI • ProcessFlow Inbasket #14
  • 20. Drop downs and Drills • Must grant access to the tables the select or drill draws data from. • Table information can be found in the <system code>.or and <System Code>.sr files in $LAWDIR/Productline/??src #15
  • 21. Contradictions • LSF Security is grant based. If in any of assigned classes access is granted then the user has access. EVEN IF it’s explicitly denied in another one of the user’s classes. • ESS/MSS Can be a but of a chore with crazy rules #16
  • 22. Naming Convention Come up with a good naming convention for roles and classes before you do anything else. These should make sense at a glance and be easy to classify and sorting them should also group them. #17
  • 23. Order • Determine Tasks each role needs to perform (These will be your security classes) • Determine what each task is composed of (These will be your rules) • Assign classes to roles • Assign roles to users • Do one user group at a time, not all at once #18
  • 25. Have users test with scripts #20
  • 28. Caching • Perform an IOSCacheRefresh • Clear all your browsing history and restart the browser • Remove Security Cache • Reduce Caching Interval • Wait up to 15 minutes • Try it in LID #23
  • 29. Training • Get at least 2 people trained early on • Infor Class (? Days) • We can help (2 Days) • Online resources #24
  • 30. Documentation • Use Excel to plan and document changes often #25
  • 31. KISS • Don’t over complicate the rules to begin with • Pick major roles and classes and only add when it’s impossible to reuse • Pick a simple, extensible naming convention #26
  • 32. Plan for trained support • Issues with logging in • Issues with screen access • Issues with functionality • Issues with report access #27
  • 34. #29
  • 35. Upcoming Events Oct 28 www.nogalis.com/education Lawson 10x Upgrade Bootcamp 2.0 Aug 14 Aug 21 Upgrade to IPA Made Easy LBI Upgrade; An Easy Home-run
  • 37. “I was thoroughly impressed by the event. It was well-attended by both onsite attendees and webinar attendees. The attention to detail was very impressive. From the tickets, the online video and audio logistics, a dedicated help desk for webinar attendees, the food and beverages, the Infor lanyards, the information binders for onsite attendees, the electronic information for webinar attendees, on and on in every aspect the event was professional, high-quality very polished and infused with enthusiasm and creativity. The onsite attendees were attentive and engaged throughout the day. Considering the event lasted several hours, that attentiveness is a testament to the event's value to the onsite attendees and webinar attendees. If the Nogalis Infor 10x Upgrade Bootcamp event is indicative of the value that Nogalis provides to Infor Lawson customers, then those customers are in good hands and will be well-served when they engage with Nogalis, Inc.” Regards, Del Dehn www.nogalis.com/bootcamp
  • 38. Bootcamp www.nogalis.com/bootcamp Tuition: Early Bird: $295 (Ends Sept 20th, 2014) Onsite: $495 (100% money back guarantee) Virtual: $395 (100% money back guarantee) TODAY ONLY $275 use promo code SECURITY