Definition Security -- oracle need to improve
Recently i was working on implementing Application Designer definition security in one of PeopleSoft instance. Well, i read the peoplebooks, employed the past knowledge and found one severe drawback of using definition group and primary permission list as a way to restrict access to Peoplesoft objects via App D .
We know there are three rules using which def security via definition group is controlled . Peoplebook says :
1
Is the definition type assigned to any definition group? If not, then anyone has update access to it. For this reason, you should add all definition types to at least one definition group.