- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
‎05-18-2017 12:15 PM
Hi,
Currently the sys_user table is read only for users with an ITIL licence.
I want to create a new field and give write permissions to users with an ITIL licence or better yet only to a specific group.
Does anyone know how I can achieve this?
Thanks,
Riaz
Solved! Go to Solution.

- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
‎05-18-2017 12:31 PM
To create an ACL, you need security_admin role.
Open System Security-> Access control and create an ACL with table as sys_user and field name as your new field name.
On the bottom, add the new role you created.
Then grant that role to the group.
Please mark this response as correct or helpful if it assisted you with your question.

- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
‎05-18-2017 12:28 PM
Hi Riaz,
This takes a few ACL rules...
Create a WRITE rule on sys_user.none for roles admin, user_admin, and itil.
Create a WRITE rule on sys_user.* for admin (and user_admin) roles. That gives them write access to all fields.
Create a WRITE rule on sys_user.fieldname for the itil user. They cannot write to all fields, just this one.

- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
‎05-18-2017 12:54 PM

- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
‎05-18-2017 12:31 PM
To create an ACL, you need security_admin role.
Open System Security-> Access control and create an ACL with table as sys_user and field name as your new field name.
On the bottom, add the new role you created.
Then grant that role to the group.
Please mark this response as correct or helpful if it assisted you with your question.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
‎05-19-2017 06:45 AM
Thanks - I created a New role then an ACL and granted that role permissions to that field.