About Catalog Permissions

To perform the actions allowed by the functional roles above, a role must also be granted permissions to access the objects in the catalog.

The table below describes permissions for roles.

Each of these permissions can be granted at the folder level to enable the operations on all items within a folder.


Permission Description

Read

Enables a role to display an object in the catalog. If the object resides within a folder, a role must be granted the Read permission on the object and its parent Folder.

Write

  • Report — requires the BI Publisher Developer role

  • Data Model — requires the BI Publisher Developer role

  • Sub Template and Style Template - requires the BI Publisher Developer Role or the BI Publisher Template Designer Role

Delete

Enables a role to delete an object.

Run Report Online

Enables a role to run a report and view it in the report viewer.

Schedule Report

Enables a role to schedule a report.

View Report Output

Enables a role to access the Report Job History for a report.


It is important to note that for a report consumer to successfully run a report, his role must have read access to every object that is referenced by the report.

For example, a report consumer must run a report in a folder named Reports. The data model for this report, resides in a folder named Data Models. This report references a Sub Template stored in a folder named Sub Templates, and also references a Style Template stored in a folder named Style Templates. The report consumer's role must be granted Read access to all of these folders and the appropriate objects within.