Controlling Access to TM1 Objects
This section describes how you can limit access
to objects on an IBM® Cognos® TM1® server for all IBM Cognos TM1 installations,
regardless of the authentication method.
- Assigning Security Rights to Groups
You can assign object-level security for any non-administrative user group in TM1 . By assigning security rights to groups, you can control a user's access to TM1 objects. - Interaction of Different Object Security Rights
If you apply different security rights to the objects that identify a cell of data, TM1 applies the most restrictive security right to the cell. - Securing Cubes
You can enhance or restrict a group's access to individual cubes. When you create a new cube, other groups initially have None access to the new cube. You must assign security rights to the new cube for other groups. - Securing Elements
You can enhance or restrict a group's access to individual elements using the Element Security Assignments dialog box. - Securing Cells
Cell-level security applies to a specified cell and overrides all other TM1 security. Cell-level security requires: - Securing Dimensions
You can enhance or restrict a group's access to individual dimensions. - Securing Processes
You can enhance or restrict a group's access to individual TurboIntegrator processes. - Securing Chores
You can enhance or restrict a group's access to individual chores. - Securing Applications and References
You can assign security privileges for public items (references or sub-applications) within public TM1 applications to user groups on the IBM Cognos TM1 server . You must have Admin privilege to an application to assign security to items within the application.