We recently upgraded a large client (almost 400 users) to GP2013 on new servers. They are keeping their old GP10 server and terminal server up and running for awhile and have requested that we make the old GP 10 installation "Read Only" for everyone except one user (and sa of course). Specifically they have asked that users have access to the same functions and roles they had before, except that they cannot create any new transactions, they can only VIEW.
So in my analysis, I have come to realize this is not as easy as it would seem. For individual users the recommendation has been made to create a security role that only has access to the INQ tasks, which works fine. But I want to make sure this would be the recommended method for ALL USERS before I write a script or use the Support Debugging Tool to change everyone's security role.
Is there a better way to do this? Should I perhaps focus on modifying the Default User Role? Can this be done with the Support Debugging Tool?
*This post is locked for comments
I have the same question (0)