Skip to Content
Odoo Menú
  • Registra entrada
  • Prova-ho gratis
  • Aplicacions
    Finances
    • Comptabilitat
    • Facturació
    • Despeses
    • Full de càlcul (IA)
    • Documents
    • Signatura
    Vendes
    • CRM
    • Vendes
    • Punt de venda per a botigues
    • Punt de venda per a restaurants
    • Subscripcions
    • Lloguer
    Imatges de llocs web
    • Creació de llocs web
    • Comerç electrònic
    • Blog
    • Fòrum
    • Xat en directe
    • Aprenentatge en línia
    Cadena de subministrament
    • Inventari
    • Fabricació
    • PLM
    • Compres
    • Manteniment
    • Qualitat
    Recursos humans
    • Empleats
    • Reclutament
    • Absències
    • Avaluacions
    • Recomanacions
    • Flota
    Màrqueting
    • Màrqueting Social
    • Màrqueting per correu electrònic
    • Màrqueting per SMS
    • Esdeveniments
    • Automatització del màrqueting
    • Enquestes
    Serveis
    • Projectes
    • Fulls d'hores
    • Servei de camp
    • Suport
    • Planificació
    • Cites
    Productivitat
    • Converses
    • Validacions
    • IoT
    • VoIP
    • Coneixements
    • WhatsApp
    Aplicacions de tercers Odoo Studio Plataforma d'Odoo al núvol
  • Sectors
    Comerç al detall
    • Llibreria
    • Botiga de roba
    • Botiga de mobles
    • Botiga d'ultramarins
    • Ferreteria
    • Botiga de joguines
    Food & Hospitality
    • Bar i pub
    • Restaurant
    • Menjar ràpid
    • Guest House
    • Distribuïdor de begudes
    • Hotel
    Immobiliari
    • Agència immobiliària
    • Estudi d'arquitectura
    • Construcció
    • Gestió immobiliària
    • Jardineria
    • Associació de propietaris de béns immobles
    Consultoria
    • Empresa comptable
    • Partner d'Odoo
    • Agència de màrqueting
    • Bufet d'advocats
    • Captació de talent
    • Auditoria i certificació
    Fabricació
    • Textile
    • Metal
    • Mobles
    • Menjar
    • Brewery
    • Regals corporatius
    Salut i fitness
    • Club d'esport
    • Òptica
    • Centre de fitness
    • Especialistes en benestar
    • Farmàcia
    • Perruqueria
    Trades
    • Servei de manteniment
    • Hardware i suport informàtic
    • Sistemes d'energia solar
    • Shoe Maker
    • Serveis de neteja
    • Instal·lacions HVAC
    Altres
    • Nonprofit Organization
    • Agència del medi ambient
    • Lloguer de panells publicitaris
    • Fotografia
    • Lloguer de bicicletes
    • Distribuïdors de programari
    Browse all Industries
  • Comunitat
    Aprèn
    • Tutorials
    • Documentació
    • Certificacions
    • Formació
    • Blog
    • Pòdcast
    Potenciar l'educació
    • Programa educatiu
    • Scale-Up! El joc empresarial
    • Visita Odoo
    Obtindre el programari
    • Descarregar
    • Comparar edicions
    • Novetats de les versions
    Col·laborar
    • GitHub
    • Fòrum
    • Esdeveniments
    • Traduccions
    • Converteix-te en partner
    • Services for Partners
    • Registra la teva empresa comptable
    Obtindre els serveis
    • Troba un partner
    • Troba un comptable
    • Contacta amb un expert
    • Serveis d'implementació
    • Referències del client
    • Suport
    • Actualitzacions
    Github Youtube Twitter Linkedin Instagram Facebook Spotify
    +1 (650) 691-3277
    Programar una demo
  • Preus
  • Ajuda

Odoo is the world's easiest all-in-one management software.
It includes hundreds of business apps:

  • CRM
  • e-Commerce
  • Comptabilitat
  • Inventari
  • PoS
  • Projectes
  • MRP
All apps
You need to be registered to interact with the community.
All Posts People Badges
Etiquetes (View all)
odoo accounting v14 pos v15
About this forum
You need to be registered to interact with the community.
All Posts People Badges
Etiquetes (View all)
odoo accounting v14 pos v15
About this forum
Ajuda

Custom access permissions

Subscriure's

Get notified when there's activity on this post

This question has been flagged
securitycustomizegroupspermissionsquickstart
2523 Vistes
Avatar
Guillermo Joaquín Urquidi Campuzano (gjuc)

At times, Odoo’s safety levels may not cover our customers' expectations. This may be due to previous experiences in dealing with security issues, or for various reasons that lead them to restrict certain information, either to their employees in general or to a specific group of them.


It can also happen that users have a function that requires viewing information from several areas but in a restricted way, this in Odoo may need permissions from two or more applications to cover with their activities. Many times this causes that some tabs are shown by default with the most basic permission so customers don’t like it.


I share with you a standard flow that does not need Studio, which will allow you to make some modifications to the views of different menus or even an entire module using groups.


  • Logic and tools
  • Use case
  • Good practices

Logic and tools
  1. Activate the developer mode
  2. Menu items


Use case

A customer requires to hide the product menu in the sales app and the whole inventory application for all their sales people so they cannot see the raw materials and their costs, and not be able to see the warehouse operations. They know the SKU of all of their products so they don’t need to check the catalog on Odoo.


They are assigned with the permission of "View only own documents" in sales and the “User” configuration for the inventory. This allows them to see the delivery order whenever they confirm a quotation, but the issue is that it enables the inventory module and this generates conflict with the customer permissions.


They require that they can only see the delivery order shown through the smart button in the sale order but the sales people cannot see the inventory operations.




These are the tabs that are allowed with those permissions.



As mentioned above, the customer requires to hide the product menu and inventory application.



How to make it standard?


In sales:


Go to menu items -> search for "Sales" -> select "Sales" option


Once this option is selected, you must go to submenus.




Select the option "products".


As you can see, Odoo has default visibility for the "View only own documents" group.


This should be changed by the group that has the necessary permissions to review this menu.


Example: 


Only administrators and those who can view all commands will have access to this view.


Result:



To hide the Inventory module you must follow the same logic above. 


Go to menu items - > search for "inventory" -> select the option "Inventory" -> under the tab "Visibility" define that only administrators or some customized group can view the entire module. 


Result: 


The sales people assigned with this permissions now does not have the Inventory module available.



Good practices

It is crucial to consider the full flow of the customers to assess the feasibility of the restrictions.


In addition, it is essential to understand the database interface to determine whether hiding a menu or a complete model is necessary to meet customer expectations or is just a half solution.


For example, if you want to hide the contact menu, when adjusting the groups through "Menu Items", users will no longer have access to the module at all. However, if a user has billing, buying or selling permissions, they will be able to access the "Customers" or "Suppliers" menu from one of those modules, which would still allow access to the "res.partner" model in some way. Therefore, it is crucial to know the database and its menus to consider all possible ways in which a user with certain permissions could access a model that is tried to hide.


A deep review and good Odoo knowledge will facilitate the configuration of permissions in a clear and functional manner.


It is also essential to  understand customer needs in order to determine whether to use the predetermined groups or whether new user groups are required to achive the security objectives.



2
Avatar
Descartar
Enjoying the discussion? Don't just read, join in!

Create an account today to enjoy exclusive features and engage with our awesome community!

Registrar-se
Related Posts Respostes Vistes Activitat
Group access permissings wrong Solved
groups permissions
Avatar
Avatar
1
de febr. 23
3099
Set Field Permission for dynamically assigned group Solved
groups permissions
Avatar
Avatar
2
de set. 19
5268
Group wise field permission read,write Solved
groups permissions
Avatar
Avatar
1
de jul. 19
6306
Security Fear: Make fields of a model secret without using groups attribute
security groups
Avatar
0
de nov. 15
5723
How to display a view with one field removed for certain groups?
security groups
Avatar
Avatar
1
de març 15
9273
Community
  • Tutorials
  • Documentació
  • Fòrum
Codi obert
  • Descarregar
  • GitHub
  • Runbot
  • Traduccions
Serveis
  • Allotjament a Odoo.sh
  • Suport
  • Actualització
  • Desenvolupaments personalitzats
  • Educació
  • Troba un comptable
  • Troba un partner
  • Converteix-te en partner
Sobre nosaltres
  • La nostra empresa
  • Actius de marca
  • Contacta amb nosaltres
  • Llocs de treball
  • Esdeveniments
  • Pòdcast
  • Blog
  • Clients
  • Informació legal • Privacitat
  • Seguretat
الْعَرَبيّة Català 简体中文 繁體中文 (台灣) Čeština Dansk Nederlands English Suomi Français Deutsch हिंदी Bahasa Indonesia Italiano 日本語 한국어 (KR) Lietuvių kalba Język polski Português (BR) română русский язык Slovenský jazyk slovenščina Español (América Latina) Español ภาษาไทย Türkçe українська Tiếng Việt

Odoo és un conjunt d'aplicacions empresarials de codi obert que cobreix totes les necessitats de la teva empresa: CRM, comerç electrònic, comptabilitat, inventari, punt de venda, gestió de projectes, etc.

La proposta única de valor d'Odoo és ser molt fàcil d'utilitzar i estar totalment integrat, ambdues alhora.

Website made with

Odoo Experience on YouTube

1. Use the live chat to ask your questions.
2. The operator answers within a few minutes.

Live support on Youtube
Watch now