Example of Securing a Model

The following is an example of creating a new user that has access to all Profitability Management models except for the Baby Bank model.

  1. Using SAS Management Console, right-click User Manager and select New User.

    For a more detailed description of creating a new user, see Add Users.

  2. Name the user. For this example, the new user is named Guest.
  3. Click the Groups and Roles tab, and make the new user a member of the Profitability Management Users group.

    Note: You must also add the new user to the Profitability Management Users group in the operating system.

  4. Click the Accounts tab, and create an account for the new user.


    Note: You must also add the new user to the Profitability Management Users group in the operating system.
  5. Click the Folders tab, and right click the Baby Bank metadata folder, and select Properties.

    We are assuming that this is the metadata folder assigned to the Baby Bank model.
  6. Click the Authorization tab, and add the new user, Guest, to the list of users and groups authorized, or denied authorization, to the Baby Bank metadata folder.
  7. Deny all permissions to the folder, and click OK.

 

Now, when the user Guest logs onto Profitability Management, the user does not have access to the Baby Bank model. Notice in the following picture, that Baby Bank is not even listed in the drop-down list of applications. It is listed in the Organize Models window, which lists all the models, but the Guest user is not able to open it, see its properties, export it, or delete it.