Dear all, We have the following problem. There is an Appian infrastru

Dear all,

We have the following problem. There is an Appian infrastructure that is already installed and users of an organization have access to (green). In this infrastructure we already have some Appian applications deployed (green). We want to develop a new Appian Application (orange), and give access to that application to external (and internal) users. One solution we thought would be to setup a new infrastructure (red) that includes an HTTP server and an Appian AS (running tempo) and to put this in different zones in our network configuration. This will ensure that we will only open up Tempo to external users.
Using access right configuration on Tempo we can make sure that the new external users will be able to only access the new application we will develop. The problem is that (in this way) we also allow internal users to access this application (and other applications) externally. If the internal users use their internal credentials to ac...

OriginalPostID-172560

OriginalPostID-172560

  Discussion posts and replies are publicly visible

Parents
  • Appian has several "layers" of security in which you explicitly deny certain users access to objects. It might be worth testing that?

    It's just a case of ensuring nothing slips through the net with group administration.

    You could also use the sites functionality but that is limited in use at the moment.

    One final thing ... Embedded Sail and web api's etc are a great way of building custom interfaces that may satisfy requirements like this?
Reply
  • Appian has several "layers" of security in which you explicitly deny certain users access to objects. It might be worth testing that?

    It's just a case of ensuring nothing slips through the net with group administration.

    You could also use the sites functionality but that is limited in use at the moment.

    One final thing ... Embedded Sail and web api's etc are a great way of building custom interfaces that may satisfy requirements like this?
Children
No Data