Skip to main content
22-Sapphire I
February 11, 2014
Question

View and Print Only Group

  • February 11, 2014
  • 8 replies
  • 2021 views

New for 10.x is the site-level View and Print Only Group. This Group has one ACL against it at Site level- it denies all actions except Read and Download. At Site, License Reporting, there is a tab for this group.


We recently attempted to convert fromusing our "Viewers" Group at Org level to this OTB Site level group. We just backed out of doing this, pending more understanding.


At this point, from the info page of EVERY user, that usershows thatthey are part of the View and Print Only Group, even though only about 1/4 of users were added to it. You can edit any user and remove the View and Print Only Group. On refresh it comes back. We tried every cache deletion, recompute, etc. It's very sticky. If you go to the info page of the View and Print Only Group and list the users, it correctly only displays the users that we added there.


We cannot figure out how to get all the users to not list that they are part of this group on their info pages.


Wondering if anyone has seen this and figure it out.


Tech support case C11856126 is pending. Seems like a major bug to us.

8 replies

avillanueva
23-Emerald I
February 12, 2014
Are they using deny rights? If so, this is might be the issue. Deny overrides all other grants and since its at the site level, it can affect everything. Users in this group cannot be added to any other group. This is different than ACLS that add increasing levels of access to achieve the desired level.
13-Aquamarine
February 12, 2014



In Reply to Mike Lockwood:



New for 10.x is the site-level View and Print Only Group. This Group has one ACL against it at Site level- it denies all actions except Read and Download. At Site, License Reporting, there is a tab for this group.


We recently attempted to convert fromusing our "Viewers" Group at Org level to this OTB Site level group. We just backed out of doing this, pending more understanding.


At this point, from the info page of EVERY user, that usershows thatthey are part of the View and Print Only Group, even though only about 1/4 of users were added to it. You can edit any user and remove the View and Print Only Group. On refresh it comes back. We tried every cache deletion, recompute, etc. It's very sticky. If you go to the info page of the View and Print Only Group and list the users, it correctly only displays the users that we added there.


We cannot figure out how to get all the users to not list that they are part of this group on their info pages.


Wondering if anyone has seen this and figure it out.


Tech support case C11856126 is pending. Seems like a major bug to us.



Mike,



I am pretty sure this is a special group that is specifically intended for the not commonly advertised “View Print Only” licenses of Windchill, these are the cheaper licenses that are available if you beg your sales guy. As I understand things being in the group comes with limitations in the User Interface with an imposed profile and embedded access control.



Sounds like this is somehow impacting your entire organisation though, do you have a group at the org for all users? Has this somehow been added to the special View Print, or has your entire Org been put in there?


-----

Lewis




22-Sapphire I
February 12, 2014
We do in fact have the "View and Print Only" licenses, and this is our main motivation for attempting to convert to use of this group.
There is a Profile tied to it OTB; we edited the profile a bit to match what we have had in place for our created "Viewers" group. Same behavior seen when we temporarily edited the Profile to remove it from this Group.

We nest groups extensively - which allows far more efficient application of ACL's. Only a few are provided to the View and Print (Viewers) group; each subgroup level has additional. We removed the OTB Deny ACL from the View and Print Only group to allow for this approach.

We're now removing all configurations that we added and trying to get all users correctly displaying their correct groups. Will be very cautious to fully test this outside production before attempting to add back.
21-Topaz I
July 20, 2016

Mike,

Where you able to get this to work?

22-Sapphire I
July 20, 2016

Nope - never went back to try to use this OTB group.

21-Topaz I
July 20, 2016

On our test server I added one user to the group but it doesn't show up in that tab under Usage and License Reporting for some reason.  I don't know why it's not showing that user.