|
Permission
|
Affected Actions
|
|---|---|
|
Administer (A)
|
On a LASR library, load
and import tables.
On a SAS LASR Analytic
Server, stop the server or set a tables limit.
|
|
Read (R)
|
On a LASR table, read
data.
On a LASR library, load
and import tables.
On
an encrypted SASHDAT library, add, delete, or load data.
|
|
Write (W)
|
On a LASR table, unload
and reload the table; append and delete rows; and edit computed columns.
|
|
ReadMetadata (RM)
|
View an object. For
example, to see an exploration, report, table, or library, you need
the ReadMetadata permission for that object.
|
|
WriteMetadata (WM)
|
Edit, rename, set permissions
for, or delete an object; create certain associations among objects.
|
|
WriteMemberMetadata
(WMM)
|
On a folder, add or
remove objects.
|
|
Task
|
Server
|
Library
|
Folder
|
Table
|
|---|---|---|---|---|
|
Read data
|
RM
|
RM
|
RM
|
RM, R
|
|
Append or delete rows
|
RM
|
RM
|
RM
|
RM, R, W
|
|
Edit computed columns
|
RM
|
RM
|
RM
|
RM, R, W
|
|
Load or import a table1
|
RM
|
RM, R, WM, A
|
RM, R, WMM, W
|
-
|
|
Load a stop list
|
RM, WM
|
RM, R, WM, A
|
RM, R, WMM, W
|
-
|
|
Reload a table
|
RM
|
RM
|
RM
|
RM, R, WM, W
|
|
Unload a table
|
RM
|
RM
|
RM
|
RM, R, W
|
|
Start a server
|
RM
|
-
|
-
|
-
|
|
Stop a server
|
RM, A
|
-
|
-
|
-
|
|
Set a server’s
tables limit
|
RM, WM, A
|
-
|
-
|
-
|
|
Assign a library to
a server
|
RM, WM
|
RM, WM
|
-
|
-
|
|
Register a table in
metadata
|
-
|
RM, WM
|
RM, WMM
|
-
|
|
Update a table’s
metadata
|
-
|
RM
|
RM
|
RM, WM
|
|
Delete a table from
metadata
|
-
|
RM, WM
|
RM, WMM
|
RM, WM
|
| 1An initial load (or import) creates a new LASR table object. Read and Write permissions on the folder support actions against the new table. | ||||
|
Task
|
Server
|
Table
|
Folder
|
Report
|
Exploration
|
|---|---|---|---|---|---|
|
Open a report or exploration
|
RM
|
RM, R
|
-
|
RM
|
RM
|
|
Export a report or exploration
|
RM
|
RM, R
|
-
|
RM
|
RM
|
|
Modify a report or exploration
|
RM
|
RM, R
|
-
|
RM, WM
|
RM, WM
|
|
Save a new report or
exploration
|
-
|
RM
|
RM, WMM
|
-
|
-
|
|
Delete a report or exploration
|
-
|
RM
|
RM, WMM
|
RM, WM
|
RM, WM
|
|
Task
|
Server
|
Table2
|
Folder
|
Query or Schema
|
|---|---|---|---|---|
|
Save a new query or
schema1
|
RM
|
RM
|
RM, WMM
|
-
|
|
Run a query or schema1
|
RM
|
RM
|
-
|
RM
|
|
Edit and save a query
or schema
|
RM
|
RM
|
RM
|
RM, WM
|
|
Delete or rename a query
or schema
|
RM
|
-
|
RM, WMM
|
RM, WM
|
| 1These tasks create new LASR tables, so the permission requirements for loading a LASR table must also be met. See Permissions for Working with LASR Tables and Servers. | ||||
| 2This column refers to any source tables that are represented in metadata. To run a query or schema against a LASR table, Read permission for the LASR table is also required. | ||||
to open the Add Identities window.

.
.
at the right edge of the table.)

with an explicit control indicator
.
.
, conditional (row-level) grants
, and denials
.
indicates an access control that is explicitly set
on the current object and explicitly assigned to the selected identity.
indicates an access control that comes from an applied
ACT whose pattern assigns the grant or denial to the selected identity.
|
Icon
|
Meaning
|
|---|---|
![]() ![]() |
Grant from an explicit
control
|
![]() ![]() |
Grant from a directly
applied ACT
|
![]() |
Grant from an indirect source (such as a parent group or parent object)
|
![]() ![]() |
Conditional grant from
an explicit control
|
![]() |
Conditional grant from an indirect source (a parent group)
|
![]() ![]() |
Denial from an explicit
control
|
![]() ![]() |
Denial from a directly
applied ACT
|
![]() |
Denial from an indirect source (such as a parent group or parent object)
|