
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
02-15-2019 08:17 AM
Hello SN Comm,
I want to see if anyone knows a good way to protect attachments that are attached to an HR Case form? Can it be locked to only the Assigned To (and maybe also certain users with a special role, etc.)?
Maybe even having to enter in a password when trying to view the attachment from the Case?? I feel like that idea is pretty far out there, but hey - ya never know what the system can to until you go through it and/ or ask!
Thank you,
-Rob
Solved! Go to Solution.

- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
02-17-2019 03:25 PM
Rob,
I see most of the replies have been to provide technical solutions within the HR Scoped app using ACLs.
I'm going to suggest another approach for you to think about. The HR Scoped App has an extra application "Employee Document Management". (https://docs.servicenow.com/bundle/london-hr-service-delivery/page/product/human-resources/concept/hr-employee-doc-management.html)
One of the key points with EDM is that it allows you to put security controls around documents associated with Employee's Profile (from cases, etc) via Document Types:
Use document types to:
- Associate a security policy. Security policies determine who can access employee documents and determine purge authorization.
- Associate a retention policy. Retention policies determine how long to keep a document and who the document is applicable to.
- Place a legal hold. Legal holds temporarily prevent document purging or changes to the document.-
- Allow access to employees.
- Configure employee documents to be moved automatically when an HR case is closed. Assign a topic detail associated with an HR service that has the Automatically move attachments box checked. See Configure an HR service.
Keep in mind EDM is an extra license cost.
Thanks,
Kevin

- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
02-15-2019 12:50 PM
Yeah, then you are going to want to add it somewhere into that script. Probably around those parent records. It depends on how much of that code you will want to override.

- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
02-15-2019 12:53 PM
Yep - that is what I was thinking once I came across this ACL.
Thanks again!!
-Rob

- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
02-15-2019 01:23 PM
You're welcome! And if my answers were helpful or got you the correct answer, would you please mark them? It helps me out.
Thank you (:

- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
02-17-2019 03:25 PM
Rob,
I see most of the replies have been to provide technical solutions within the HR Scoped app using ACLs.
I'm going to suggest another approach for you to think about. The HR Scoped App has an extra application "Employee Document Management". (https://docs.servicenow.com/bundle/london-hr-service-delivery/page/product/human-resources/concept/hr-employee-doc-management.html)
One of the key points with EDM is that it allows you to put security controls around documents associated with Employee's Profile (from cases, etc) via Document Types:
Use document types to:
- Associate a security policy. Security policies determine who can access employee documents and determine purge authorization.
- Associate a retention policy. Retention policies determine how long to keep a document and who the document is applicable to.
- Place a legal hold. Legal holds temporarily prevent document purging or changes to the document.-
- Allow access to employees.
- Configure employee documents to be moved automatically when an HR case is closed. Assign a topic detail associated with an HR service that has the Automatically move attachments box checked. See Configure an HR service.
Keep in mind EDM is an extra license cost.
Thanks,
Kevin

- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
02-18-2019 05:51 AM
Thanks for your suggestion Kevin!
However, I am wondering if this EDM was something introduced with London? So far, I am not seeing any documentation with this same suggestion as yours for Kingston (which we are currently on). The closes thing that looks like is in Kingston, is some sort of Managed Documents process (https://docs.servicenow.com/bundle/kingston-servicenow-platform/page/product/managed-documents/reference/r_ManagedDocumentFeatures.html).
I will need to read up more on the suggestion you provided - to gear up with upgrading to London.
Thanks again!!
-Rob