Hi
I am wondering if any one can help with the following security configuration. I have always tried to keep the security set-up as simple as possible by using standard roles with minimum cutomisation. But I do occasionally have the requirement to customise a role to provide read only access to some areas of the system typically for internal/external auditors.

I have successfully created a read only role that for the most part achieves what I want but one area I am struggling with is journal entry forms such as the vendor tax invoice journal, general ledger journal and fixed asset journals.
I have given read only access to these functions so that a user with this role can view posted and unposted journals but I cannot work out how to remove the menu action item to reverse an entire journal. It seems strange to me that a role that only has privilege's to view journal txns can see the option to reverse the entire journal and they have the ability to attempt to do this, which fails because they do not have permissions to create a reversal but it would be far better for that option not to appear. But I have so far been unsuccessful in tracking down the relevant privilege and menu action item to be able to remove it. Can any one help with where I should be looking the security diagnostics has not helped me so far.
Thanks in advance
Simon