<?xml version="1.0" encoding="UTF-8" ?>
<?xml-stylesheet type="text/xsl" href="https://community.appian.com/cfs-file/__key/system/syndication/rss.xsl" media="screen"?><rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:slash="http://purl.org/rss/1.0/modules/slash/" xmlns:wfw="http://wellformedweb.org/CommentAPI/"><channel><title>Restrict file extensions on Appian Designer</title><link>https://community.appian.com/discussions/f/administration/34894/restrict-file-extensions-on-appian-designer</link><description>Hello All, 
 We have a use case where we need to restrict Appian users that have access to Appian designer to not to upload a certain file type extensions like executable files for example. We&amp;#39;ve tried to restrict by adding extensions to block on admin</description><dc:language>en-US</dc:language><generator>Telligent Community 12</generator><item><title>RE: Restrict file extensions on Appian Designer</title><link>https://community.appian.com/thread/134778?ContentTypeID=1</link><pubDate>Mon, 06 May 2024 17:43:02 GMT</pubDate><guid isPermaLink="false">d3a83456-d57b-489c-a84c-4e8267bb592a:571719e6-667a-4067-bd51-ab31f9789f5d</guid><dc:creator>Stefan Helzle</dc:creator><description>&lt;p&gt;Is this on a PROD environment? In an older blog post, I discuss a way to allow secure access to PROD for a support team.&lt;/p&gt;
&lt;p&gt;&lt;a id="" href="https://appian.rocks/2023/09/20/support-processes-on-appian/"&gt;https://appian.rocks/2023/09/20/support-processes-on-appian/&lt;/a&gt;&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;</description></item><item><title>RE: Restrict file extensions on Appian Designer</title><link>https://community.appian.com/thread/134776?ContentTypeID=1</link><pubDate>Mon, 06 May 2024 17:27:06 GMT</pubDate><guid isPermaLink="false">d3a83456-d57b-489c-a84c-4e8267bb592a:77204e59-5131-4e2f-bfb5-b0c9bdf150e6</guid><dc:creator>yashwanthr0001</dc:creator><description>&lt;p&gt;One of the Appian group in our application is part of designer group which means they will be able to access Appian designer (Support group). So we want to make sure that no one can upload any harmful file(.exe for example)&amp;nbsp;using designer. We have added necessary restrictions for our sites by adding on admin console but we also needed to have a similar restriction on designer as well.&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;</description></item><item><title>RE: Restrict file extensions on Appian Designer</title><link>https://community.appian.com/thread/134775?ContentTypeID=1</link><pubDate>Mon, 06 May 2024 17:18:38 GMT</pubDate><guid isPermaLink="false">d3a83456-d57b-489c-a84c-4e8267bb592a:22c4ad63-7b7a-405c-8c25-ca0f2556d06a</guid><dc:creator>Stefan Helzle</dc:creator><description>&lt;p&gt;What do you want to achieve with this? Or, what do you want to prevent?&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;</description></item><item><title>RE: Restrict file extensions on Appian Designer</title><link>https://community.appian.com/thread/134772?ContentTypeID=1</link><pubDate>Mon, 06 May 2024 15:11:33 GMT</pubDate><guid isPermaLink="false">d3a83456-d57b-489c-a84c-4e8267bb592a:0041c72e-552a-4324-93e9-579b40e2425f</guid><dc:creator>Mike Schmitt</dc:creator><description>&lt;p&gt;I believe the best practice would be to limit designer access to users who know what they&amp;#39;re doing, and who won&amp;#39;t upload files of a type that aren&amp;#39;t allowed by project development best practices.&amp;nbsp; You can enforce that by good project management oversight (daily if needed, i guess).&lt;/p&gt;
&lt;p&gt;For what it&amp;#39;s worth, though, simply uploading an EXE file to the appian environment has *extremely little* potential danger in and of itself - even a compromised file (afaik) would need to be downloaded and run by some other user for it to ever have any effect.&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;</description></item><item><title>RE: Restrict file extensions on Appian Designer</title><link>https://community.appian.com/thread/134771?ContentTypeID=1</link><pubDate>Mon, 06 May 2024 15:05:39 GMT</pubDate><guid isPermaLink="false">d3a83456-d57b-489c-a84c-4e8267bb592a:7a7699d4-8b3d-45d2-a285-839a274f0867</guid><dc:creator>yashwanthr0001</dc:creator><description>&lt;p&gt;Yeah, Admin console is only restricting for fileUpload component. One thing we&amp;#39;ve tried was to add a fileMatch in httpd.conf file on webserver but that didn&amp;#39;t worked out for us.&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;</description></item><item><title>RE: Restrict file extensions on Appian Designer</title><link>https://community.appian.com/thread/134770?ContentTypeID=1</link><pubDate>Mon, 06 May 2024 14:52:28 GMT</pubDate><guid isPermaLink="false">d3a83456-d57b-489c-a84c-4e8267bb592a:4516ba79-683e-4650-925c-ff9c238d7c61</guid><dc:creator>Konduru Chaitanya</dc:creator><description>&lt;p&gt;I am not sure if you can apply restrictions on creating a document object. AFAIK we cannot.&lt;/p&gt;
&lt;p&gt;&lt;/p&gt;
&lt;p&gt;The Upload File settings on Admin console will be applied only on the file upload component.&lt;br /&gt;&lt;img style="max-height:240px;max-width:320px;" src="/resized-image/__size/640x480/__key/communityserver-discussions-components-files/12/pastedimage1715007379417v1.png" alt=" " /&gt;&lt;/p&gt;
&lt;p&gt;Ref: &lt;a href="https://docs.appian.com/suite/help/24.1/Appian_Administration_Console.html#file-upload"&gt;File Upload - Admin console/System&lt;/a&gt;&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;</description></item></channel></rss>