[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"detail-sidebar-cat-1-en-105":3,"doc-seo-189421-105":53,"doc-detail-189421-en":127},{"code":4,"msg":5,"data":6},0,"success",[7,14,19,24,29,34,39,44,49],{"id":8,"doc_module":9,"doc_module_name":10,"category_name":11,"show_sort_weight":12,"slug":13},11,1,"Template","Presentations",90,"presentations",{"id":15,"doc_module":9,"doc_module_name":10,"category_name":16,"show_sort_weight":17,"slug":18},12,"Resumes",80,"resumes",{"id":20,"doc_module":9,"doc_module_name":10,"category_name":21,"show_sort_weight":22,"slug":23},14,"Invoices",70,"invoices",{"id":25,"doc_module":9,"doc_module_name":10,"category_name":26,"show_sort_weight":27,"slug":28},15,"Posters",60,"posters",{"id":30,"doc_module":9,"doc_module_name":10,"category_name":31,"show_sort_weight":32,"slug":33},16,"Social Media",50,"social-media",{"id":35,"doc_module":9,"doc_module_name":10,"category_name":36,"show_sort_weight":37,"slug":38},17,"Forms",40,"forms",{"id":40,"doc_module":9,"doc_module_name":10,"category_name":41,"show_sort_weight":42,"slug":43},18,"Letters",30,"letters",{"id":45,"doc_module":9,"doc_module_name":10,"category_name":46,"show_sort_weight":47,"slug":48},21,"Paper Templates",5,"papers-templates",{"id":50,"doc_module":9,"doc_module_name":10,"category_name":51,"show_sort_weight":4,"slug":52},158,"General","general-158",{"code":4,"msg":54,"data":55},"ok",{"site_id":56,"language":57,"slug":58,"title":59,"keywords":60,"description":61,"schema_data":62,"social_meta":120,"head_meta":122,"extra_data":124,"updated_unix":126},105,"en","security-setup-security-types-license-types-and-user-group-steps","Security Setup - Security Types, License Types and User Group Steps","","Security setup guidance explains how Cognos Analytics Reporting and CER licensing control product capabilities and user access. Capability Security uses License Types and User Roles to enable functions such as interactive viewer features, dashboards, web-based report authoring, data modules, framework modeling, and administration console tasks. Model Security (data/row security) is configurable via Manage CER Settings and supports organizational, labor suppression, and project security. Object Security restricts accessible content using preconfigured Costpoint domain user groups and recommends assigning users as CER consumers when they should only read shared content. Procedure steps cover navigating to manage user groups and assigning users to groups.",{"@graph":63,"@context":119},[64,80,102],{"@type":65,"itemListElement":66},"BreadcrumbList",[67,71,74,77],{"item":68,"name":69,"@type":70,"position":9},"https://docshare.wps.com","Home","ListItem",{"item":72,"name":10,"@type":70,"position":73},"https://docshare.wps.com/template/",2,{"item":75,"name":11,"@type":70,"position":76},"https://docshare.wps.com/template/presentations/",3,{"item":78,"name":59,"@type":70,"position":79},"https://docshare.wps.com/template/security-setup-security-types-license-types-and-user-group-steps/189421/",4,{"url":78,"name":59,"@type":81,"image":82,"author":87,"headline":59,"publisher":90,"fileFormat":93,"inLanguage":57,"description":61,"dateModified":94,"datePublished":95,"encodingFormat":93,"isAccessibleForFree":96,"interactionStatistic":97},"DigitalDocument",{"url":83,"@type":84,"width":85,"height":86},"https://docshare.wps.com/thumbnails/security-setup-security-types-license-types-and-user-group-steps/189421.png","ImageObject",442,249,{"name":88,"@type":89},"Valentina","Person",{"url":68,"name":91,"@type":92},"DocShare","Organization","application/pdf","2026-09-26","2026-09-03",true,{"@type":98,"interactionType":99,"userInteractionCount":101},"InteractionCounter",{"@type":100},"ViewAction",7,{"@type":103,"mainEntity":104},"FAQPage",[105,111,115],{"name":106,"@type":107,"acceptedAnswer":108},"What does Capability Security control in CER?","Question",{"text":109,"@type":110},"Capability Security determines which product capabilities a user can use based on the assigned License Type/User Role. It controls access to features like interactive viewing, dashboards, and report authoring tools.","Answer",{"name":112,"@type":107,"acceptedAnswer":113},"How is Model Security enabled or disabled?",{"text":114,"@type":110},"Model Security is enabled or disabled through Manage CER Settings. The default implementation enables it, and specific security types require it to be set to Enabled.",{"name":116,"@type":107,"acceptedAnswer":117},"What happens when a user is not assigned to an Object Security User Group?",{"text":118,"@type":110},"A user not assigned to an Object Security User Group should be set up as a CER Consumer, which provides read-only access to shared content managed by the administrator.","https://schema.org",{"og:url":78,"og:type":121,"og:title":59,"og:site_name":91,"og:description":61},"article",{"robots":123,"canonical":78},"index,follow",{"doc_id":125,"site_id":56},189421,1788396724,{"code":4,"msg":5,"data":128},{"doc_id":125,"user_id":129,"nickname":88,"user_avatar":130,"doc_module":9,"category_id":8,"category_name":11,"doc_title":59,"doc_description":61,"doc_content":131,"file_id":132,"file_url":133,"file_type":134,"file_size":135,"view_count":101,"is_deleted":4,"is_public":9,"is_downloadable":9,"audit_status":9,"page_count":35,"language":136,"language_code":57,"site_id":56,"html_lang":57,"table_of_contents":137,"faqs":138,"seo_title":139,"seo_description":61,"update_tm":126,"read_time":140},13056703020460,"https://ap-avatar.wpscdn.com/avatar/be000253dac470eee5d?_k=1778207105932848923","| Security Type | Description/Features |\n| --- | --- |\n| Capability\u003Cbr>Security | Capability Security, sometimes referred to as Product Security, utilizes the defined License Types to determine product capabilities available to an end user. Each CER user should be assigned to one CER License Type/User Role based on the functions they can perform.\u003Cbr>Types of product capabilities that are available through these License Types are as follows:\u003Cbr>􀁸 Interactive Viewer – This enables a user to interact with the report output, even without the report authoring tool. It includes sorting, filtering, aggregation, grouping, changing the data container type to chart, saving changes to a new report, and interacting with charts.\u003Cbr>􀁸 Dashboards – This enables a user to gain insight into the data through the use of interactive visualizations.\u003Cbr>􀁸 Interactive Report Authoring – This is the web-based tool that enables report writers and developers to construct multi-query reports.\u003Cbr>􀁸 Data Module – This provides users that are not efficient in Framework Manager, with limited web-based modeling capabilities to leverage data sets or blend data from existing packages.\u003Cbr>􀁸 Framework Manager – This is a metadata modeling tool for Cognos Analytics 11.\u003Cbr>􀁸 Administrator Console – This is used to perform tasks such as managing\u003Cbr>schedules or user accounts. It can also be utilized for customizing the user interface and product experience. |\n\n| Security Type | Description/Features |\n| --- | --- |\n| Model Security | Model Security, sometimes referred to as Data or Row Security, is enabled to restrict the data that an end user can see. This is enabled or disabled through Manage CER Settings. Some important points to note about Model Security:\u003Cbr>􀁸 The default setting during implementation for Model Security is enabled.\u003Cbr>􀁸 If using Organization or Labor Suppression Security, this setting must be set to Enabled.\u003Cbr>􀁸 If enabled , an Organization Security Group must be assigned to each user in order to retrieve data from models that have data-level security, such as Projects or Project Planning.\u003Cbr>􀁸 This is an optional security feature and can be disabled through the Manage CER Settings.\u003Cbr>Within Model Security there are three types of security available:\u003Cbr>􀁸 Organizational Security – This type of Model Security limits user access to data based on the organization security established in Costpoint.\u003Cbr>o Costpoint Planning (Budgeting and Planning) will use the Organizational Security that is designated within the User Maintenance (MAU1) screen. These settings will coincide with the CER  PROJ_PLAN Object Security User Group.\u003Cbr>􀁸 Labor Suppression Security – This type of Model Security limits access to labor rates or costs at the employee level based on the labor suppression settings in Costpoint. This is typically used to protect information related to Labor (rates and costs) that should not be viewed by most users.\u003Cbr>􀁸 Project Security – This type of Model Security limits access to projects based on the assigned Project Manager in Costpoint.\u003Cbr>o For secured models in CER that use Costpoint Planning, Project and Org security will be leveraged based on the setting in the Planning Configuration Settings screen. In this screen you will have selected if project security is based on “Org ID” or “Project Budget Security”. This security applies only to the “Project Planning”model in CER. These settings will coincide with the CER  PROJ_PLAN Object Security User Group. |\n\n| Security Type | Description/Features |\n| --- | --- |\n| Object Security | Object Security determines the content users can access. Content in CER 7.2 Series is delivered in the form of packages, reports, and dashboards and is based on the specific Costpoint Domains/Modules, examples of this content are Projects, Accounts Receivables, Accounts Payable, Billing, or General Ledger. These are all located within Team Content. Object Security utilizes User Groups based on Costpoint Domains. T","cbCaiiR3waRut2cs","https://ap.wps.com/l/cbCaiiR3waRut2cs","pdf",1278771,"English","# Security Types\n## Capability Security\n## Model Security\n## Object Security\n# License Types and User Roles\n# Steps: Manage User Groups","[{\"question\":\"What does Capability Security control in CER?\",\"answer\":\"Capability Security determines which product capabilities a user can use based on the assigned License Type/User Role. It controls access to features like interactive viewing, dashboards, and report authoring tools.\"},{\"question\":\"How is Model Security enabled or disabled?\",\"answer\":\"Model Security is enabled or disabled through Manage CER Settings. The default implementation enables it, and specific security types require it to be set to Enabled.\"},{\"question\":\"What happens when a user is not assigned to an Object Security User Group?\",\"answer\":\"A user not assigned to an Object Security User Group should be set up as a CER Consumer, which provides read-only access to shared content managed by the administrator.\"}]","Security Setup - Security Types, License Types and User Group Steps | PDF",6]