Create ACLs for AI Data Explorer and Query Generation protected scope access
Create Access Control Lists (ACLs) in protected scopes to enable AI Data Explorer and Query Generation to access tables within those scopes.
Before you begin
You must have administrator access to the protected scope where you want to enable AI Data Explorer and Query Generation functionality.
Role required: admin or scope-specific administrator role
About this task
Protected scopes require their own ACLs that mirror the functionality provided by AI Data Explorer and Query Generation standard ACLs. These ACLs must call a public script include provided by the AI Data Explorer plugin to verify proper access control.
Procedure
Result
AI Data Explorer and Query Generation can now access tables within the protected scope, subject to the security restrictions defined in the ACLs. Users with appropriate permissions can create and read AI Data Explorer records for tables in the protected scope.
What to do next
You must also create and approve Restricted Caller Access (RCA) records to enable Query Generation to fetch data from protected scope tables through API calls.