Remove User
Use this command to remove symbol access, authorizations, and group membership from a user.
This command must be used in conjunction with Maintenance. While it is enabled, no other users can perform maintenance related activities in the Data Server repository. When you are finished, you must remember to disable the Maintenance mode, and thereby allow normal access by other users. For more information, see Maintenance or Exclusive.
Syntax regular
REMOVE USER [DomainName\]UserId ACCESS Dimension RoleName [SymbolName [AccessType]]
REMOVE USER [DomainName\]UserId ACCESS
REMOVE USER [DomainName\]UserId AUTHORIZATION AuthorizationName [AuthorizationGroup]
REMOVE USER [DomainName\]UserId AUTHORIZATION
REMOVE USER [DomainName\]UserId GROUP [GroupName]
where:
- DomainName is optional and is the network domain of a Windows-authenticated user.
- UserId is the ID of the user from which you want to remove access, authorizations, or users.
- Dimension is the dimension containing the symbol you want to remove access to.
- RoleName is name of a symbol access role.
- SymbolName is a symbol from which the specified user needs access removed.
- AccessType is a setting that determines whether the user has read/write access. Select one of the following:
Value Description W
Write access, to allow the user to change data.
R
Read-only access, to allow the user to read the data but not change it. This is the default.
- AuthorizationName is a name that designates the type of authorization removed from the group.
Value Description ADDINFOROFFICE
Access the Longview Add-In for Office.
Note: You must also assign the CONNECTVIAAPPLICATIONFRAMEWORK authorization to allow users or user groups to access the Longview Add-In for Office.
ADDINFOROFFICESUBMITDATA
Submit data in the Longview Add-In for Office.
ANALYSISREPORTINGAUTHOR
Access Longview Analysis and Reporting as a Report Author.
ANALYSISREPORTINGPUBLISHER
Access Longview Analysis and Reporting as a Report Publisher.
ANALYSISREPORTINGUSER
Access Longview Analysis and Reporting as a Report User.
APPLICATIONADMINISTRATOR
Access Longview Application Administrator.
ATTRIBUTE
Manage attributes.
BATCH
Manage batches.
CONNECTVIAAPPLICATIONFRAMEWORK
Connect to the server using Longview Application Framework.
Note: You must assign this authorization to allow users or user groups to access Longview Apps, Longview Designer, Longview tools and editors, the Longview Add-In for Office, and Longview Tax.
DASHBOARDDESIGNER
Access Longview Dashboard Designer.
DELETECOMMENTS
Delete any existing comments in the Data Server. Users without Delete Comments authorization can delete only their own comments before they are submitted to the database.
Note: Delete existing comments functionality is available in Data Grids only.
DESIGNER
Access Longview Designer.
Note: You must also assign the CONNECTVIAAPPLICATIONFRAMEWORK authorization to allow users or user groups to access Longview Designer.
DESIGNERDATAIMPORTSCREATE
Create data import apps in Longview Designer.
Note: You must also assign the DESIGNER authorization to allow users or user groups to access Longview Designer.
DESIGNERDATAIMPORTSDELETE
Delete data import apps in Longview Designer.
Note: You must also assign the DESIGNER authorization to allow users or user groups to access Longview Designer.
DESIGNERDATAIMPORTSMODIFY
Edit data import apps in Longview Designer.
Note: You must also assign the DESIGNER authorization to allow users or user groups to access Longview Designer.
DESIGNERDATAIMPORTSPUBLISH
Publish data import apps in Longview Designer.
Note: You must also assign the DESIGNER authorization to allow users or user groups to access Longview Designer.
DESIGNERLONGVIEWAPPSPUBLISH
Publish Longview Apps in Longview Designer.
Note: You must also assign the DESIGNER authorization to allow users or user groups to access Longview Designer.
FOREIGNEXCHANGESETTINGS
Manage foreign exchange settings.
GROUPADMINISTRATION
Perform group administration.
GROUPSYMBOLACCESS
Manage symbol access for groups.
INTERCOMPANYSETTINGS
Manage intercompany settings.
JOURNALENTRIES
Access Longview Journal Entries.
JOURNALENTRY
Manage journal entries.
JOURNALENTRYCURRENTPERIODCREATE
Create current period journal entries.
JOURNALENTRYCURRENTPERIODPERMPOST
Permanently post current period journal entries.
JOURNALENTRYCURRENTPERIODREVIEWPOST
Review post current period journal entries.
JOURNALENTRYDELETE
Delete non-shared journal entries.
JOURNALENTRYFUTUREPERIODCREATE
Create future period journal entries.
JOURNALENTRYFUTUREPERIODPERMPOST
Permanently post future period journal entries.
JOURNALENTRYFUTUREPERIODREVIEWPOST
Review post future period journal entries.
JOURNALENTRYOWNPERMPOST
Permanently post own journal entries.
JOURNALENTRYOWNREVIEWPOST
Review post own journal entries.
JOURNALENTRYPRIORPERIODADJCREATE
Create prior period journal entries.
JOURNALENTRYPRIORPERIODADJPERMPOST
Permanently post prior period journal entries.
JOURNALENTRYPRIORPERIODADJREVIEWPOST
Review post prior period journal entries.
JOURNALENTRYRESTATEMENTCREATE
Create restatement journal entries.
JOURNALENTRYRESTATEMENTPERMPOST
Permanently post restatement journal entries.
JOURNALENTRYRESTATEMENTREVIEWPOST
Review post restatement journal entries.
LOCK
Manage locks.
MAPPINGSEDITOR
Access the Mappings editor.
Note: You must also assign the CONNECTVIAAPPLICATIONFRAMEWORK authorization to allow users or user groups to access the Mappings editor.
MAPPINGSMANAGE
Create, modify, delete mappings.
Note: You must also assign the MAPPINGSEDITOR authorization to allow users or user groups to access the Mappings editor.
MAPSMANAGE
Create, modify, delete maps.
Note: You must also assign the MAPPINGSEDITOR authorization to allow users or user groups to access the Mappings editor.
MODIFYDATA
Submit data.
NDDSETTINGS
Manage NDD settings.
ROLE
Manage symbol access roles.
RULE
Manage rules.
SCHEDULE
Manage schedules.
SERVERMANAGER
Access Longview Server Manager.
SERVERMANAGERSTART
Start/stop the Longview server.
SERVICEACCOUNTUSERADMINISTRATOR
Sets the user to be a User Administrator.
SERVICEACCOUNTRESTAPI
Sets user to be a Service Account User.
Note: Can only be set using PUSER or a user who has User Administrator Authorization.
SYMBOL
Manage symbols.
SYMBOLASSIGN
Assign symbols to a hierarchy. Must be used with SYMBOL.
SYMBOLATTRIBUTECREATE
Create symbol attributes. Must be used with ATTRIBUTE.
SYMBOLATTRIBUTEDELETE
Delete symbol attributes. Must be used with ATTRIBUTE.
SYMBOLATTRIBUTEMODIFY
Modify symbol attributes. Must be used with ATTRIBUTE.
SYMBOLCANCREATEROOT
Create root symbols. Must be used with SYMBOL, CREATESYMBOL.
SYMBOLCANDELETEROOT
Delete root symbols. Must be used with SYMBOL, SYMBOLDELETE.
SYMBOLCREATE
Create symbols. Must be used with SYMBOL.
SYMBOLDELETE
Delete symbols. Must be used with SYMBOL.
SYMBOLREMOVE
Remove symbols from a hierarchy. Must be used with SYMBOL.
SYMBOLSET
Modify symbols. Must be used with SYMBOL.
SYMBOLSWITCH
Switch symbols in a hierarchy. Must be used with SYMBOL.
SYSTEMATTRIBUTECREATE
Create system attributes. Must be used with ATTRIBUTE.
SYSTEMATTRIBUTEDELETE
Delete system attributes. Must be used with ATTRIBUTE.
SYSTEMATTRIBUTEMODIFY
Modify system attributes. Must be used with ATTRIBUTE.
USERADMINISTRATION
Perform user administration
USERATTRIBUTECREATE
Create user attributes. Must be used with ATTRIBUTE.
USERATTRIBUTEDELETE
Delete user attributes. Must be used with ATTRIBUTE.
USERATTRIBUTEMODIFY
Modify user attributes. Must be used with ATTRIBUTE.
USERRESETPASSWORD
Reset passwords.
USERSYMBOLACCESS
Manage symbol access for users.
VIEWDATA
View data.
WORKFLOWDESIGNER
Access Longview Workflow Designer.
- AuthorizationGroup is required only when AuthorizationName is USERADMINISTRATION or USERRESETPASSWORD, and is the group from which you want the indicated user’s authorization removed.
- GroupName is the name of a group. For AUTHORIZATION, this parameter is optional and required only when AuthorizationName is USERADMINISTRATION or USERRESETPASSWORD.
For ACCESS, if the optional AccessType parameter is not included in the syntax, the command removes all access to the specified symbol from the indicated user. If the optional SymbolName and AccessType parameters are not included in the syntax, the command removes all symbol access for the dimension and role combination from the indicated user. If the syntax contains only “REMOVE USER [DomainName\]UserId ACCESS”, the command removes all access from the indicated user.
For AUTHORIZATION, if the syntax contains only “REMOVE USER [DomainName\]UserId AUTHORIZATION”, the command removes all authorizations from the indicated user.
For GROUP, if the optional GroupName parameter is not included in the syntax, the command removes the indicated user from all groups.
Syntax example
MAINTENANCE ON
REMOVE USER Gilda ACCESS ACCOUNTS AnalystRole Cash W
MAINTENANCE OFF
Creating an ASCII input file
To remove the access privileges, authorizations, or group membership for a large number of users, specify the parameters for this command in an ASCII file.
Create an ASCII file containing the following information for each user:
[DomainName\]UserId{ACCESS{Dimemsion{RoleName[{SymbolName][{AccessType]
[DomainName\]UserId{ACCESS{Dimension{RoleName
[DomainName\]UserId{AUTHORIZATION{AuthorizationName[{AuthorizationGroup]
[DomainName\]UserId{GROUP{GroupName
[DomainName\]UserId{GROUP
Use the QUICKFORMAT command, if necessary, to make formatting changes to the ASCII file.
where:
- FileName is an ASCII file containing the data. It can include a complete or partial folder path in the format C:\...\FileName. If FileName includes spaces, enclose it in double quotation marks; for example:
@"C:\My Documents\My Data.txt"
Note: If the document is in the same location as lv_af.exe, you do not need to specify the drive or path.
See also