Difference between revisions of "Information Systems:ASW Object Security"
| Line 47: | Line 47: | ||
- note that when an out of balance batch is forced to post, a balancing entry will NOT be made, so the G/L will be OUT OF BALANCE! When an out of balance batch is posted by a user that is NOT in the ASW4ADM group, a balancing entry is added to that batch. |
- note that when an out of balance batch is forced to post, a balancing entry will NOT be made, so the G/L will be OUT OF BALANCE! When an out of balance batch is posted by a user that is NOT in the ASW4ADM group, a balancing entry is added to that batch. |
||
| + | |||
| + | Because of this last point, we have only one ASW administrator - FINADMIN. |
||
==Authority Groups== |
==Authority Groups== |
||
Revision as of 16:37, 19 October 2015
ASW Object Authority
This was all set up before we went live, and will probably not need any changes.
Authority status –
0 – No authority check control.
1 – Authority check is performed. The default is that all users
can access the object. This means that you flag the users
who do not have authority.
2 – Authority check is performed. The default is that no users
can access the object. This means that you flag the users who
do have authority.
3 – iSeries security is used (for example, menu authority).
All security functions can be found on the ‘Authority Task’ menu. Key in GO SECUR and press enter.
*VA/480B* Authority Tasks 12/01/14 11:18:28 SECUR
Select one of the following: Application SoftWare
Release: XX1:480
1. Work with user profiles
2. Work with authority routines
3. Work with authority groups
4. Work with program security
5. Work with program/user security
6. Work with name template security
7. Work with item template security
8. Work with report writer security
9. Work with balance enquiry template security
Selection or command (C) IBS 1989-2002
===> _______________________________________________________________________
F3=Exit F4=Prompt F9=Retrieve F12=Cancel
F13=Information Assistant F16=System main menu
Administration
In order for a user to be an ASW administrator, your iSeries user profile must have ASW4ADM as your ‘Group Profile’. If there is already a value there, it can go into ‘Supplemental group’.
You will then be allowed to -
- rebuild summary ID files
- post manual J/E’s to G/L control accounts. (There is no problem posting when ASW automatically creates these entries).
- note that when an out of balance batch is forced to post, a balancing entry will NOT be made, so the G/L will be OUT OF BALANCE! When an out of balance batch is posted by a user that is NOT in the ASW4ADM group, a balancing entry is added to that batch.
Because of this last point, we have only one ASW administrator - FINADMIN.
Authority Groups
To secure a particular object, for example a credit note.
- Go into Authority Group Table Maintenance
- Select ORDT Order Type
- Change Active Group to Y
- Press F9 to secure objects. Add a new record.
- For ‘Object Name’ key in the value of the order type, in this case CN
- Type in a description
- Change default value to ‘2’. This means that users cannot use this secured object unless they are explicitly authorized.
- Press enter to add secured object
- Select secured object, and press F8 - Object authority per Routine and User.
- Add a new record. F4 will show the Authority group routines. In this case, the choice is SECORDT for sales order types, and SECORDTP for purchase order types. The descriptions do not show here, but they can be seen in Authority routine table maintenance
- Enter the user name
- Key in Y to give this user authority to this secured object.
Secure an Application
- This is by company.
GO SECUR
*CV/480B* Authority Tasks 10/18/04 12:33:41 SECUR
Select one of the following: Application SoftWare
Release: XX1:480
1. Work with user profiles
2. Work with authority routines
3. Work with authority groups
4. Work with program security
5. Work with program/user security
6. Work with name template security
7. Work with item template security
8. Work with report writer security
9. Work with balance enquiry template security
Selection or command (C) IBS 1989-2002
===> 3____________________________________________________________________________
F3=Exit F4=Prompt F9=Retrieve F12=Cancel
F13=Information Assistant F16=AS/400 main menu
Select option 3 – Work with authority groups.
*CV/480B* Authority group table maintenance 10/18/04 12:35:24 ASGD2511 ------------------------------------------------------------------------------ Group Description Ctl pgm Active X *APCDMNU Application control ASGR281 N *C/S ASW Client Server *NONE N *CLFFINBTC Close FIN batch control ASGR282 N *MENU Menu control ASGR283 N *MNUITM Menu item control ASGR281 N ------------------------------------------------------------------------------ Group
Select *APCDMNU Application control.
*CV/480B* Authority group table maintenance 10/18/04 12:36:12 ASGD2514
------------------------------------------------------------------------------
Authority group..... *APCDMNU
Description......... Application control
Active group........ Y
Object control pgm.. ASGR281
Default value....... 1
F7=Users F8=Routines F9=Objects F10=Details
The ‘Default value’ MUST be left as 1. This means that any application not included under ‘Objects’ will be left open. If this value is changed to ‘2’, then all applications not listed will be secured; including administration!
If this is done, the only way to correct it is by using DFU on file SRBACG to change this record. Even the ASW administrator and security super user cannot get into security to change it.
F7 – Users.
*PL/480B* Authority group table maintenance 12/01/14 12:36:44 ASGD2521
Users with all object authority
-------------------------------------------------------------------------------
Authority group..... *APCDMNU Application control
-------------------------------------------------------------------------------
User Name All object authority
_ ASW4DEV ASW4DEV Y
_ ASW4SEC ASW4SEC Y
_ ITGRP IT Group Y
-------------------------------------------------------------------------------
User
__________
These are profiles with all ASW object authority. We use group profile here, then attach individual users to them. This makes maintenance much easier; to add or remove a user; only one field on the profile needs to be changed.
F9 – Objects (indicate application being secured)
*CV/480B* Authority group table maintenance 10/18/04 14:35:00 ASGD2541
Secured objects
------------------------------------------------------------------------------
Authority group..... *APCDMNU Application control
------------------------------------------------------------------------------
Object Description Default
X FIN Application Object 2
_ AAC ASW Asset Control 2
------------------------------------------------------------------------------
Object
__________________________
In these cases, the ‘Default value’ is changed to ‘2’. This means that no one has access, except those users explicitly indicated.
*PL/480B* Authority group table maintenance 12/01/14 14:20:37 ASGD2544
Secured objects
-------------------------------------------------------------------------------
Authority group..... *APCDMNU Application control
-------------------------------------------------------------------------------
Object name......... FIN
Description......... ASW Financial
Default value....... 2
F8=Obj aut per routine and usr
F8=Object authority per routine and user
*PL/480B* Authority group table maintenance 12/01/14 14:22:29 ASGD2571
Object authority per Routine and User
-------------------------------------------------------------------------------
Authority group..... *APCDMNU Application control
Object.............. FIN
-------------------------------------------------------------------------------
Routine User Name Authority
ASGR995 FIN1 Finance Supervisor Y
ASGR995 FIN2 Finance A/P G/L Y
ASGR995 FIN3 Finance A/P A/R G/L Y
ASGR995 FIN4 Finance A/P A/R Y
ASGR995 FIN5 Finance A/P Y
-------------------------------------------------------------------------------
Routine User Authority
__________ __________ _
Only users attached to one of these group profiles can access finance (and of course users attached to one of the group profiles with all object authority). We can give individual users access, but that will then become a maintenance problem.
Anyone not allowed access will see this message.
*CV/480B* General Ledger Transaction Tasks 10/18/04 12:42:52 GLTRAN
Select one of the following: Application SoftWare
Release: XX1:480
1. Enter financial transactions
2. Copy/eliminate G/L journals
3. Update delayed G/L journals
4. Retrieve financial transactions
5. Transfer logistic accounting transactions
6. Work with journals in error
7. Apply standing orders manually
8. Create calculation/redistribution transactions
9. Transfer ship and debit transactions
70. Exchange rate tasks
Selection or command (C) IBS 1989-2002
===> 1__________________________________________________________________
F3=Exit F4=Prompt F9=Retrieve F12=Cancel
F13=Information Assistant F16=AS/400 main menu
You are not allowed to access this application, authority control is active
To see which applications can be secured, go to –
5. System management
2. System setup
1. Work with companies
Select company, then press enter until the list of application definitions is displayed. Any one that is active can be secured.
*PL/480B* Application defn/company maintenance 12/01/14 14:30:19 ASGD9401
-------------------------------------------------------------------------------
Company code........ PL uniPHARM Archive
-------------------------------------------------------------------------------
App code Description Status Mandatory
DBF ASW Database files Active Y
GEN ASW General Active Y
SYS ASW System files/objects Active Y
AAC ASW Asset Control Active N
ACS ASW Analyser C/S Active N
AMT ASW Alert Management Active N
APC ASW Advanced Purchase Control Active N
CSB ASW C/S Base Active N
CVT ASW Data conversion tools Active N
C2G ASW COOL:2E General Active N
DGH ASW Dangerous Goods Handling Active N
DIS ASW Distribution Active N
DPS ASW Purchase support Inactive N
-------------------------------------------------------------------------------
App code
___
Secure a Menu
As this uses iSeries security on the menu object, it is by user only; not group profile. It also doesn’t work for a user with all object authority.
GO SECUR
*CV/480B* Authority Tasks 10/18/04 13:54:25 SECUR
Select one of the following: Application SoftWare
Release: XX1:480
1. Work with user profiles
2. Work with authority routines
3. Work with authority groups
4. Work with program security
5. Work with program/user security
6. Work with name template security
7. Work with item template security
8. Work with report writer security
9. Work with balance enquiry template security
Selection or command (C) IBS 1989-2002
===> 3____________________________________________________________________
F3=Exit F4=Prompt F9=Retrieve F12=Cancel
F13=Information Assistant F16=AS/400 main menu
Select option 3 Work with authority groups.
*CV/480B* Authority group table maintenance 10/18/04 13:55:14 ASGD2511 ------------------------------------------------------------------------------ Group Description Ctl pgm Active _ *APCDMNU Application control ASGR281 Y _ *C/S ASW Client Server *NONE N _ *CLFFINBTC Close FIN batch control ASGR282 N X *MENU Menu control ASGR283 N _ *MNUITM Menu item control ASGR281 N ------------------------------------------------------------------------------ Group ___________
Select *MENU Menu control.
*CV/480B* Authority group table maintenance 10/18/04 13:58:32 ASGD2514
------------------------------------------------------------------------------
Authority group..... *MENU
Description......... Menu control
Active group........ Y
Object control pgm.. ASGR283
Default value....... 3
F7=Users F8=Routines F9=Objects F10=Details
‘Default value’ must be ‘3’, as menus are iSeries (or AS400) objects.
F8 – Routines
*CV/480B* Authority group table maintenance 10/18/04 14:44:36 ASGD2531
Secured routines
------------------------------------------------------------------------------
Authority group..... *MENU Menu control
------------------------------------------------------------------------------
Routine Description Secured
_ AS400 AS/400 Object Security Y
------------------------------------------------------------------------------
Routine
___________
Once menu security has been activated, there are two different ways of securing menus; by continuing on with this option, or by going through the ‘Menu Handling Tasks’ menu.
Continuing with this option
From previous screen, F9 – Objects (indicate menus being secured)
*CV/480B* Authority group table maintenance 10/18/04 14:36:37 ASGD2541
Secured objects
------------------------------------------------------------------------------
Authority group..... *MENU Menu control
------------------------------------------------------------------------------
Object Description Default
_ PERIOD Period End Tasks 2
_ YEAR Year End Tasks 2
------------------------------------------------------------------------------
Object
______________
In this case, the ‘Default value’ is changed to ‘2’. This means that no one has access, except those users explicitly indicated.
F10 – Detail (to add users)
*CV/480B* Authority group table maintenance 10/18/04 15:35:56 ASGD2551
Authority detail
------------------------------------------------------------------------------
Authority group..... *MENU Menu control
Sort sequence....... Object Routine User
------------------------------------------------------------------------------
Object Routine User Authority
_ PERIOD AS400 NANCYN Y
_ YEAR AS400 NANCYN Y
------------------------------------------------------------------------------
Object Routine User Authority
F8=Change Sort sequence
Secure Menus Using ‘Menu Handling Tasks’ Menu (MEDEA)
Navigate to the menu you want to secure.
*PL/480B* Cash Book tasks 12/01/14 14:49:24 CASHBOOK
Select one of the following: Application SoftWare
Release: XX1:480
1. Work with Cash Book reconciliation
3. Print Cash Book balances
4. Print Cash Book transactions
Selection or command (C) IBS 1989-2002
===> _________________________________________________________________
F3=Exit F4=Prompt F9=Retrieve F12=Cancel
F13=Information Assistant F16=System main menu
Make note of the menu name in the upper right corner.
On a command line in ASW, key in GO MEDEA and press enter.
*CV/480B* Menu Handling Tasks 10/18/04 16:52:22 MEDEA
Select one of the following: Application SoftWare
Release: XX1:480
1. Work with menu items
2. Work with menus
3. Display menu option
Selection or command (C) IBS 1989-2002
===> 2__________________________________________________________
F3=Exit F4=Prompt F9=Retrieve F12=Cancel
F13=Information Assistant F16=AS/400 main menu
Select option 2 Work with menus.
Work with Menus ASGD4501
Subset . . . . . . . . *ALL
Position to . . . . . CASHBOOK Starting characters
Type option (and Menu), press Enter.
1=Create 2=Revise 3=Copy 4=Delete 5=View 6=DW-Document 7=Rename
11=Move menu 14=Create Menu 15=Translate
Opt Menu Library Subset Description MEDEA
__ ________ _________ _________
__ AACANALF *APP *STDDELTA Asset Mgmt Financial Analysis Tasks YES
__ AACANALF *APP *STANDARD Asset Mgmt Financial Analysis Tasks YES
__ AACANALP *APP *STANDARD Asset Mgmt Physical Analysis Tasks YES
__ AACFIN *APP *STANDARD Asset Management Financial Tasks YES
__ AACMAIN *APP *STANDARD Asset Management Tasks YES
__ AACPER *APP *STANDARD Asset Control Periodical Tasks YES
__ AACPHY *APP *STANDARD Asset Management Physical Tasks YES
__ AACSET *APP *STANDARD Asset Control Setup Tasks YES
__ AACYEAR *APP *STANDARD Year End Tasks YES
__ ACACCON *APP *STANDARD Account Control Tasks YES
F1=Shift info F3=Exit F5=Refresh F6=Create DW-document F8=Select subset
F9=Menu items - Where used F11=Display by desc F12=Cancel F13=Repeat
‘Position to’ the menu you want to secure.
Work with Menus ASGD4501
Subset . . . . . . . . *ALL
Position to . . . . . Starting characters
Type option (and Menu), press Enter.
1=Create 2=Revise 3=Copy 4=Delete 5=View 6=DW-Document 7=Rename
11=Move menu 14=Create Menu 15=Translate 16=Authority
Opt Menu Library Subset Description MEDEA
__ ________ _________ _________
16 CASHBOOK *APP *STANDARD Cash Book tasks YES
__ CASHM *APP *STANDARD Cash Management Tasks YES
__ CBACC *APP *STANDARD Cash Book accounting tasks YES
__ CONSOL *APP *STANDARD Consolidation Management Tasks YES
__ CONVER *APP *STANDARD Translation Tasks YES
__ CONVER2 *APP *STANDARD Translation Tasks YES
__ CROSSREF *APP *STANDARD Cross-reference Tasks YES
__ CVTCTLS *APP *STANDARD Currency conversion tools menu YES
F1=Shift info F3=Exit F5=Refresh F6=Create DW-document F8=Select subset
F9=Menu items - Where used F11=Display by desc F12=Cancel F13=Repeat
Select it with option 16 – Authority (will only show if menu security is active).
*CV/480B* Authority group table maintenance 10/18/04 16:57:05 ASGD2544
Secured objects
------------------------------------------------------------------------------
Authority group..... *MENU Menu control
------------------------------------------------------------------------------
Object name......... CASHBOOK
Description......... Cash Book tasks
Default value....... 2
F8=Obj aut per routine and usr
In this case, the ‘Default value’ is changed to ‘2’. This means that no one has access, except those users explicitly indicated.
F8 – Object Authority Per Routine and User
*CV/480B* Authority group table maintenance 10/18/04 17:00:36 ASGD2574
Object authority per Routine and User
------------------------------------------------------------------------------
Authority group..... *MENU Menu control
Object.............. CASHBOOK
------------------------------------------------------------------------------
Routine............. AS400
User................ NANCYN
Authority........... Y
If you now go to menu control/objects on the Authority Tasks menu, you will see this menu has been added to the list.
*CV/480B* Authority group table maintenance 10/18/04 17:04:08 ASGD2541
Secured objects
------------------------------------------------------------------------------
Authority group..... *MENU Menu control
------------------------------------------------------------------------------
_ Object Description Default
_ CASHBOOK Cash Book tasks 2
_ PERIOD Period End Tasks 2
_ YEAR Year End Tasks 2
------------------------------------------------------------------------------
Object
___________
How this works (for both processes) is by changing the object authority on the menu. This is a basic iSeries function – not ASW.
Edit Object Authority
Object . . . . . . . : PERIOD Owner . . . . . . . : ASW4OWN
Library . . . . . : A450AP Primary group . . . : *NONE
Object type . . . . : *MENU ASP device . . . . . : *SYSBAS
Type changes to current authorities, press Enter.
Object secured by authorization list . . . . . . . . . . . . *NONE
Object
User Group Authority
ASW4OWN *ALL
NANCYN *USE
*PUBLIC *EXCLUDE
F3=Exit F5=Refresh F6=Add new users F10=Grant with reference object
F11=Display detail object authorities F12=Cancel F17=Top F18=Bottom
By setting the default to ‘2’ on the ‘Secured Objects’ screen, the *PUBLIC access was changed to *EXCLUDE. By setting Nancy’s authority to ‘Y’ on the ‘Authority Detail’ screen, the entry NANCYN *USE was added.
Anyone not allowed access, will see this message.
*CV/480B* Financial Accounting Tasks 10/18/04 15:23:19 FINACC
Select one of the following: Application SoftWare
Release: XX1:480
1. General ledger transaction tasks
2. Analysis tasks
3. Reconciliation tasks
4. Period end tasks
5. Year end tasks
Selection or command (C) IBS 1989-2002
===> 4___________________________________________________________________
F3=Exit F4=Prompt F9=Retrieve F12=Cancel
F13=Information Assistant F16=AS/400 main menu
Not authorized to object PERIOD in A450AP.
Menu PERIOD in library *LIBL not displayed.
Secure a Menu Option
- This is by company.
On an ASW command line, key in GO SECUR and press enter.
*CV/480B* Authority Tasks 10/18/04 13:54:25 SECUR
Select one of the following: Application SoftWare
Release: XX1:480
1. Work with user profiles
2. Work with authority routines
3. Work with authority groups
4. Work with program security
5. Work with program/user security
6. Work with name template security
7. Work with item template security
8. Work with report writer security
9. Work with balance enquiry template security
Selection or command (C) IBS 1989-2002
===> 3________________________________________________________________
F3=Exit F4=Prompt F9=Retrieve F12=Cancel
F13=Information Assistant F16=AS/400 main menu
Select option 3 Work with authority groups.
*CV/480B* Authority group table maintenance 10/18/04 15:51:27 ASGD2511 ------------------------------------------------------------------------------ Group Description Ctl pgm Active _ *APCDMNU Application control ASGR281 Y _ *C/S ASW Client Server *NONE N _ *CLFFINBTC Close FIN batch control ASGR282 N _ *MENU Menu control ASGR283 Y X *MNUITM Menu item control ASGR281 N ------------------------------------------------------------------------------ Group ____________
Select *MNUITM Menu item control.
*CV/480B* Authority group table maintenance 10/18/04 16:09:52 ASGD2514
------------------------------------------------------------------------------
Authority group..... *MNUITM
Description......... Menu item control
Active group........ Y
Object control pgm.. ASGR281
Default value....... 1
F7=Users F8=Routines F9=Objects F10=Details
The ‘Default value’ MUST be left as 1. This means that any menu option not included under ‘Objects’ will be left open. If this value is changed to ‘2’, then all menu options not listed will be secured; including administration!
If this is done, the only way to correct it is by using DFU on file SRBACG to change this record. Even the ASW administrator and security super user cannot get into security to change it.
F8 – Routines
*CV/480B* Authority group table maintenance 10/18/04 16:12:53 ASGD2531
Secured routines
------------------------------------------------------------------------------
Authority group..... *MNUITM Menu item control
------------------------------------------------------------------------------
Routine Description Secured
_ ASGR995 Check Menu item/Application Y
------------------------------------------------------------------------------
Routine
_____________
Once menu option security has been activated, there are two different ways of securing menus; by continuing on with this option, or by going through the ‘Menu Handling Tasks’ menu.
To continue with this option, on the previous screen press F9 – Objects (indicate menu objects being secured).
*PL/480B* Authority group table maintenance 12/01/14 15:12:19 ASGD2541
Secured objects
-------------------------------------------------------------------------------
Authority group..... *MNUITM Menu item control
-------------------------------------------------------------------------------
Object Description Default
_ AN109 Work with budget number defini 2
_ AN183 Work with budgets 2
_ AN383 Print budgets 2
_ AN450 Rebuild balances from transact 2
_ AN750 Create budget from budget 2
_ AN755 Create budget from balances 2
_ AP005 Work with A/P agreements 2
_ AP006 Reorganise A/P agreement file 2
_ AP011 Work with A/P transactions 2
_ AP020 Print A/P payment statistics 2
_ AP022 Print A/P agreements 2
_ AP032 Print A/P statement of account 2
_ AP035 Print A/P transactions 2
-------------------------------------------------------------------------------
Object
_______________________
The ‘Default values’ are all ‘2’, which means that no one has access, except those users explicitly included. (‘1’ would mean that all users have access, unless explicitly excluded.)
Select object, then press F8=’Object authority per routine and user’
*PL/480B* Authority group table maintenance 12/01/14 15:19:56 ASGD2571
Object authority per Routine and User
-------------------------------------------------------------------------------
Authority group..... *MNUITM Menu item control
Object.............. AP032
-------------------------------------------------------------------------------
Routine User Name Authority
_ ASGR995 FIN1 Finance Supervisor Y
_ ASGR995 FIN2 Finance A/P G/L Y
_ ASGR995 FIN3 Finance A/P A/R G/L Y
_ ASGR995 FIN4 Finance A/P A/R Y
_ ASGR995 FIN5 Finance A/P Y
-------------------------------------------------------------------------------
Routine User Authority
__________ __________ _
This shows all the users, or user groups, that can access this menu option. ‘Y’ means that they have access. You can change this to ‘N’ to explicitly exclude a user.
It is difficult to add a menu option to the list of secured objects because you need to know the menu item name. So use Medea.
Secure Menu Options Using ‘Menu Handling Tasks’ Menu (MEDEA)
Say for example, we want to secure option 4 on this menu.
*PL/480B* Budget Management Tasks 12/01/14 15:33:47 BUDGET
Select one of the following: Application SoftWare
Release: XX1:480
1. Work with budgets
2. Print budgets
3. Create budget from budget
4. Create budget from balances
5. Work with budget number definitions
6. Work with budget curves
9. Budget upload
Selection or command (C) IBS 1989-2002
===> _____________________________________________________________________
F3=Exit F4=Prompt F9=Retrieve F12=Cancel
F13=Information Assistant F16=System main menu
On an ASW command line, key in GO MEDEA and press enter.
*CV/480B* Menu Handling Tasks 10/18/04 17:18:01 MEDEA
Select one of the following: Application SoftWare
Release: XX1:480
1. Work with menu items
2. Work with menus
3. Display menu option
Selection or command (C) IBS 1989-2002
===> 1__________________________________________________________
F3=Exit F4=Prompt F9=Retrieve F12=Cancel
F13=Information Assistant F16=AS/400 main menu
Use option 1 Work with menu items.
Work with Menu Items ASGD4401
Subset . . . . . . . . *ALL
Position to. . . . . . ______________________________ Starting characters
Type option (and Menu Item), press Enter.
1=Create 2=Revise 3=Copy 4=Delete 5=View 7=Rename
14=Create Command 15=Translate 16=Authority
Opt Menu Item Subset Description
__ __________ ___________
__ M_UPSETTAX *CUSTLOCAL uniPHARM setup -- Sales Taxes
__ M_UPSETWHR *CUSTLOCAL uniPHARM Setup - Warehouse - RF
__ M_UPWHSE *CUSTLOCAL uniPHARM Warehouse/Sales
__ M_UPWHSE1 *CUSTLOCAL uniPHARM Warehouse/Sales Menu 1
__ M_APAGR *STANDARD A/P agreement tasks
__ M_APANAL *STANDARD A/P analysis tasks
__ M_APCASHM *STANDARD A/P cash management tasks
__ M_APINV *STANDARD A/P invoicing tasks
__ M_APPAY *STANDARD A/P payment tasks
__ M_APPER *STANDARD A/P periodical tasks
F1=Shift info F3=Exit F5=Refresh F8=Select subset
F11=Display by name F12=Cancel F13=Repeat
To find the correct menu item, press F11 to display by description. In the ‘Position To’ field, key in the exact text of the menu option and press enter. Note that this is case sensitive.
Work with Menu Items ASGD4401
Subset . . . . . . . . *ALL
Position to. . . . . . Create budget Starting characters
Work with Menu Items ASGD4401
Subset . . . . . . . . *ALL
Position to. . . . . . Create budget Starting characters
Type option (and Menu Item), press Enter.
1=Create 2=Revise 3=Copy 4=Delete 5=View 7=Rename
14=Create Command 15=Translate 16=Authority
Opt Menu Item Subset Description
__ __________ ___________
16 AN755 *STANDARD Create budget from balances
__ AN750 *STANDARD Create budget from budget
__ GL060 *STANDARD Create calculation/redistribution transactions
__ AN710 *STANDARD Create distributed balances
__ IP840 *STANDARD Create field description file from FRF
__ GF510 *STANDARD Create interface file (originating company)
__ DI685 *STANDARD Create internal replenishment orders
__ DI680 *STANDARD Create internal replenishment suggestions
__ DM890 *STANDARD Create item file reorganisation proposal
__ GD890 *STANDARD Create name file reorganisation proposal
F1=Shift info F3=Exit F5=Refresh F8=Select subset
F11=Display by name F12=Cancel F13=Repeat
Use option 16 – authority for the menu item you want to secure.
*CV/480B* Authority group table maintenance 10/18/04 17:22:30 ASGD2544
Secured objects
------------------------------------------------------------------------------
Authority group..... *MNUITM Menu item control
------------------------------------------------------------------------------
Object name......... AN755
Description......... Create budget from balances
Default value....... 2
F8=Obj aut per routine and usr
Default value ‘2’ means that users cannot access this menu option unless they are explicitly authorized (or attached to a group profile that is).
F8 – Object Authority Per Routine and User
*CV/480B* Authority group table maintenance 10/18/04 17:26:51 ASGD2571
Object authority per Routine and User
------------------------------------------------------------------------------
Authority group..... *MNUITM Menu item control
Object.............. AN755
------------------------------------------------------------------------------
Routine User Name Authority
_ ASGR995 FINSUP Finance Supervisor Y
------------------------------------------------------------------------------
Routine User Authority
__________ __________ _
If you now go to menu item control/objects on the Authority Tasks menu, you will see this menu option has been added to the list.
Anyone not allowed access will see this message.
*CV/480B* A/P Payment Tasks 10/18/04 16:33:24 APPAY
Select one of the following: Application SoftWare
Release: XX1:480
1. Enter financial transactions
2. Work with A/P payment proposals
3. Print DI payment orders
4. Work with A/P transactions
70. Name tasks
71. Cheque inventory tasks
Selection or command (C) IBS 1989-2002
===> 1_____________________________________________________________
F3=Exit F4=Prompt F9=Retrieve F12=Cancel
F13=Information Assistant F16=AS/400 main menu
You are not allowed to access this menu item, authority control is active
Secure an Inquiry Program
You have to know the name of the program you are securing. To find it, go into the program, and find the program name.
*VA/480B* G/L control file enquiry 12/01/14 16:33:46 GDMD0981
-------------------------------------------------------------------------------
Period name End date
Actual year/period.. 1511 FEBRUARY 2/28/14
MARCH 3/31/14
Last closed period.. 1509 APRIL 4/30/14
First stored period. 0801 MAY 5/31/14
JUNE 6/30/14
JULY 7/31/14
AUGUST 8/31/14
SEPTEMBER 9/30/14
OCTOBER 10/31/14
NOVEMBER 11/30/14
No of normal periods 12 DECEMBER 12/31/14
Total no of periods. 13 JANUARY 1/31/15
YEAR END 4/30/15
GDMD0981 is the screen name. The program name is GDMR098. The ‘D’ in the last letter is for ‘display’; the program has ‘R’ for RPG (the programming language) in that spot. The last digit, ‘1’, means that this is screen #1 of the display. We can check this by looking at the list of inquiry programs.
On an ASW command line, key in 81, and press enter.
*PL/480B* Table maintenance program selection 12/01/14 15:49:44 ASGD0181
-------------------------------------------------------------------------------
Appl Table
_ AAC Account codes
_ AAC Acquisition accounts
_ AAC Acquisition types
_ AAC Asset account groups
_ AAC Asset number series
_ AAC Asset type & groups
_ AAC Depreciation modules
_ AAC Depreciation rules
_ AAC Depreciation types
_ AAC Disposal types
_ AAC G/L transaction types
_ AAC Indexes
_ AAC Insurance companies
_ AAC Insurance policies
_ AAC Investment budgets
-------------------------------------------------------------------------------
Appl Search argument
___ enquiry
Key in a search argument of ‘enquiry’ and press enter.
*PL/480B* Table maintenance program selection 12/01/14 15:49:44 ASGD0181
-------------------------------------------------------------------------------
Appl Table
_ FIN Transaction enquiry sequences
x GEN Enquiry programs
-------------------------------------------------------------------------------
Appl Search argument
___ ____________________________
Select ‘Enquiry programs’.
*VA/480B* Enquiry program table maintenance 12/02/14 14:39:18 GDMD1051
-------------------------------------------------------------------------------
Subset: *ALL
-------------------------------------------------------------------------------
Program Description Appl Subset
_ GDMR098 G/L control file GEN *STANDARD
_ GDMR145 Document output formats GEN *STANDARD
_ GDMR200 Document number series FIN *STANDARD
_ GDMR201 Names GEN *STANDARD
_ GDMR225 Name notes GEN *STANDARD
_ GDMR226 Name note groups GEN *STANDARD
_ GDMR227 Name note group members GEN *STANDARD
_ GDMR228 Name note types GEN *STANDARD
_ GDMR236 Commodity codes GEN *STANDARD
_ GDMR237 Nature of transactions GEN *STANDARD
_ GDMR238 Ports GEN *STANDARD
_ GDMR239 Border values GEN *STANDARD
_ GDMR240 Name search field ctl table GEN *STANDARD
-------------------------------------------------------------------------------
Program Subset
GDMR09 __________
F8=Select subset
Key ‘GDMR09’ for program, and press enter. This confirms that GDMR098 is G/L control file inquiry.
Go back to the ASW command line, key in GO SECUR and press enter.
*CV/480B* Authority Tasks 10/18/04 17:31:36 SECUR
Select one of the following: Application SoftWare
Release: XX1:480
1. Work with user profiles
2. Work with authority routines
3. Work with authority groups
4. Work with program security
5. Work with program/user security
6. Work with name template security
7. Work with item template security
8. Work with report writer security
9. Work with balance enquiry template security
Selection or command (C) IBS 1989-2002
===> 4________________________________________________________
F3=Exit F4=Prompt F9=Retrieve F12=Cancel
F13=Information Assistant F16=AS/400 main menu
Select option 4 Work with program security. Press F6 to add, key in program name, press enter, press F12.
*CV/480B* Program security maintenance 10/18/04 17:34:45 ASGD0501
------------------------------------------------------------------------------
Program Description
_ GDMR098 G/L application control enquiry
------------------------------------------------------------------------------
Program
____________
This program is now secured.
*CV/480B* Authority Tasks 10/18/04 17:36:40 SECUR
Select one of the following: Application SoftWare
Release: XX1:480
1. Work with user profiles
2. Work with authority routines
3. Work with authority groups
4. Work with program security
5. Work with program/user security
6. Work with name template security
7. Work with item template security
8. Work with report writer security
9. Work with balance enquiry template security
Selection or command (C) IBS 1989-2002
===> 5______________________________________________________________
F3=Exit F4=Prompt F9=Retrieve F12=Cancel
F13=Information Assistant F16=AS/400 main menu
To give users or groups access, select option 5 Work with program/user security.
*CV/480B* Program/user security maintenance 10/18/04 17:37:28 ASGD0511
------------------------------------------------------------------------------
Program............. GDMR098
User profile........ _______
If only the program name is entered, all user access for that program is displayed. If only a user is entered, their access to all secured programs is displayed.
*CV/480B* Program/user security maintenance 10/18/04 17:53:29 ASGD0512
------------------------------------------------------------------------------
Program..... GDMR098 G/L application control enquiry
------------------------------------------------------------------------------
Access User
N FINADMIN
Y FINGRP
Y FINSUP
N GERALDP
N GORDIEL
N GORDONM
N JIMM
N JOHNT
N LEWISJ
N MARYT
------------------------------------------------------------------------------
You can control access by keying in Y or N.