web
You’re offline. This is a read only version of the page.
close
Skip to main content

Notifications

Announcements

No record found.

Community site session details

Community site session details

Session Id :
Service | Customer Service, Contact Center, Fie...
Unanswered

Shared Views and Security Roles

(0) ShareShare
ReportReport
Posted on by

A very long list of shared views are shown in D365 CS / Cases / "My Views" for some users, usually got all, few or at least one of the security roles from below, the views are not shared with everyone instead shared among specific users or teams, nevertheless if a profile got assigned any of these Service Roles will be able to see the whole list, even if not directly shared with them

  • Service Manager
  • Service Reader
  • Service Writer

In addition cannot see even when creating new roles where to assign and restrict shared views rights to for example Business Unit level, the closest match is on Customization Tab / View, however looks like only can be setup at Organization Level

pastedimage1650470656558v1.png

I have the same question (0)
  • Nya Profile Picture
    29,060 on at

    Hi,

    Sorry but I cannot understand you well.

    Would you please attach some screenshots about the "long list"?

  • Community Member Profile Picture
    on at

    Unfortunately it is a production env and cannot produce a snapshot, big number of our users got assigned the default "Service Reader" or "Service Writer" role, or in combination with different security roles, for those users, including myself when testing, the list of "My Views" in D366 CS / Cases / is staggering, I realized using XrmToolBox "Personal Views Sharing" that some of those views were not even shared and were personal or even own test views

    I could create a customized role based on "Service Reader" or "Service Writer", the only thing is puzzling me is what feature of these Security Role is controlling this long list of personal and shared views, I thought was going to be Security Role /  Customization Tab / View, tried with Core Records and Saved Views but that setting does not change any output

    This is happening to any user that has assigned one or both of the Service Reader or Writer roles, I am trying to replicate in a lab environment

  • Amit Katariya007 Profile Picture
    10,409 Super User 2025 Season 2 on at

    Hello,

    You are using the Dynamics 365 correct ? if yes then can you elaborate more about the issue?

    Because from above explanation you are trying to achieve view sharing w.r.t to users without sharing the views instead, it should be depends on the roles. please correct me if I am wrong.

    so that we can help you related with this.

    Thank you,

    Amit katariya

  • Community Member Profile Picture
    on at

    Hi Amit,

    This is not something that I am trying to achieve but happening,

    User without the "Service Reader" role assigned got access to the usual list of System Views, and My Views will be an usual short list of their own or shared with them views, then followed by the usual System Views list

    pastedimage1650965720762v10.png

    When an user got assigned the default "Service Reader" role, info about these roles here, which big number of our users had assigned, those users can see not only their own or shared with them views, but everyone views, even personal testing views that a manager was testing appears in "my views" list, this can be a really massive number of views mostly no relevant to them and difficult to navigate when you are trying to filter records using a "system view" instead

    pastedimage1650965172189v7.png

    I added the role to my profile and happens to me, however one side-effect of removing out the role from those users they are not able to see email templates when adding an action email from a case timeline, in the security role I found the feature that controls the rights to email templates so I can tweak it or do something about it

    pastedimage1650965480781v9.png

    On the default "Service Reader" role I cannot find the feature that control that right of this broad access of views

    Surely clear as mud! :-)

  • Amit Katariya007 Profile Picture
    10,409 Super User 2025 Season 2 on at

    Hello,

    Can you check, if personal views are shared with user or not ? if yes then you can just remove the permission from it so that it will be not visible to them.

    Also In general "Service Reader" is just a role which have Read permission on all the entities.

    As a suggestion you can create a new role where just add below article's permissions for the email templates and add read permission for the case that is it.  Try this new role and test it once.

    Also if users are able to see multiple views which they are not intended to then you can create a custom view which will visible as per user's role.

    community.dynamics.com/.../603805

    crm365blog.wordpress.com/.../

    Thank you,

    Amit Katariya

  • Community Member Profile Picture
    on at

    Hi Amit,

    "..Can you check, if personal views are shared with user or not ? if yes then you can just remove the permission from it so that it will be not visible to them..."

    ""..Also In general "Service Reader" is just a role which have Read permission on all the entities..."

    When this role is applied to a profile it can see even views that are not shared with them, plus as you said reading access to a big number of other identities in Organization level independently of the BU of the user, bad!

    "As a suggestion you can create a new role where just add below article's permissions for the email templates and add read permission for the case that is it. Try this new role and test it once.""

    Basically is what I have been doing this morning, trying to remove the role from one of the users and try to tweak our own generic one accordingly, one problem was that removing the "Service Reader" role lost reading access to email templates, they were not showing in case form timeline email actions, now sorted as well

    This new role is more appropriated and less intrusive than "Service Reader", surely will need some tweaking and testing but is looking promising so far

    --

    My only question left, and this is for learning and being a stubborn being, is what specific feature of the "Reader Role" gives access to all the views independently of shared of not, in my opinion no a role that should be given to a generic user, I thought will be Core Records Tab / Saved View but none access is selected, then had a look to customization tab view, which is selected to Read Acccess / Organization Level, however does not look like is any of those or might be intrinsic within the security role itself, honestly don't know

    Thanks to everyone that contributed specially @Amit Katariya007 and Nya 

Under review

Thank you for your reply! To ensure a great experience for everyone, your content is awaiting approval by our Community Managers. Please check back later.

Helpful resources

Quick Links

Responsible AI policies

As AI tools become more common, we’re introducing a Responsible AI Use…

Neeraj Kumar – Community Spotlight

We are honored to recognize Neeraj Kumar as our Community Spotlight honoree for…

Leaderboard > Service | Customer Service, Contact Center, Field Service, Guides

#1
Tom_Gioielli Profile Picture

Tom_Gioielli 73 Super User 2025 Season 2

#2
Daniyal Khaleel Profile Picture

Daniyal Khaleel 42 Most Valuable Professional

#3
Scott Jackson UK Profile Picture

Scott Jackson UK 22

Last 30 days Overall leaderboard

Featured topics

Product updates

Dynamics 365 release plans