Securing Report Layouts

Report layouts (XNV files) are stored on a file server and not in the PeopleSoft database. Set up network security so that only appropriate users are able to modify or delete report layout (XNV) files in the report layout directories of the network.

With web-based PS/nVision reporting, reports launched from the browser are run through PeopleSoft Process Scheduler and executed on a report server. The file server that stores the layouts is associated with the report server.

A report server is a Windows NT machine with PS/nVision (PeopleTools client software), Microsoft Excel, and PeopleSoft Process Scheduler installed. Process Scheduler selects the layout from the PS/nVision layout directory path defined in the Process Scheduler configuration. If you restrict access to this directory on the report server, unauthorized users cannot modify shared report layouts. Additionally, access to the PS/nVision directories on the Process Scheduler report server should be restricted.

If the report is run using the Windows client, a user authorized to define layouts can point to the PS/nVision layout directory (as defined in Configuration Manager) on the local drive and then modify and save the layout.

If a user has a PS/nVision user profile defined in PeopleSoft Security where only RUN_REPORT is selected, and all other settings (for example, EDIT_REPORT, SAVE_REPORT) are cleared, the user cannot create a new report request, because the Save button is disabled.

Note:

When the report request is run, access to ledger or record data itself is still controlled by the row-level security defined for that user.