Categories
Export functionality should be enabled only to specific application roles
Organization Name
Schneider Electric
Description
Export functionality should be configurable by application role, so only approved users/roles can export the data outside the tool.
Use Case and Business Need
There is an option to export data in the OAC DV and OBIEE. This has some data privacy and GDPR concerns.
While consuming the data in the platform might be good (as Administrators can guarantee that data is secured and seen only by the granted users), the fact that the data can be easily exported generates a security risk for data breaches, once the data leave the boundaries of the platform.
For that, in our opinion OAC requires some more configuration options to mitigate the risk.
Original Idea Number: b88f07b9bb
Comments
-
Limit export feature by roled should be already possible in the manage privilege section of the Administrative console, but this apply only to Dashboards and Analysis, I don't think that it involves also DV, which is much less configurable regarding privileges.
Must have ...0