Hello,
I have here a Composite environment installed (v4.1) with Active Directory integration enabled for C1 autorization.
Now the goal is to use the C1 permission to set the permissions on some global data items and use them to check if the current website user (which is a AD user) has (read) access for the data type when the user is member of one of the usergroups, set on the data type. On a webpage (IPage) a usercontrol or razor can I match if the AD usergroups of the current user is selected as read on the data type.
Now I have two issues:
I have here a Composite environment installed (v4.1) with Active Directory integration enabled for C1 autorization.
Now the goal is to use the C1 permission to set the permissions on some global data items and use them to check if the current website user (which is a AD user) has (read) access for the data type when the user is member of one of the usergroups, set on the data type. On a webpage (IPage) a usercontrol or razor can I match if the AD usergroups of the current user is selected as read on the data type.
Now I have two issues:
- the AD usergroups are not in sync with the C1 Console user groups.
The only possible solution what I can think is to create a backend process that read the AD usergroups put it in the SQL table IUserGroup -
and, read the selected Usergroups with read permissions for the data items.
For this issue I cannot found an API that give me the information about the persmissions set on a data type.
- maybe there are another solution to use AD user and check the usergroups of the data item?
-
how can i read the user groups of the data type which are set with C1 Console