bcquality/custom/knowledge/security/cmfrt-three-permissionset-pattern.good.al
BeytullahCengiz88 c72c0ad685 Add CMFRT coding standards documentation and examples
- Introduced guidelines for "one codeunit one global function" architecture to enforce single responsibility in AL code.
- Added best practices and anti-patterns for adding parameters via overloads to maintain backward compatibility.
- Documented the importance of never deleting members in AL and always marking them as obsolete.
- Established the requirement for OnBefore and OnAfter integration events for global procedures to enhance extensibility.
- Defined naming conventions for CMFRT objects, including prefixes and object ID ranges to avoid conflicts.
- Implemented patterns for case statements to ensure all cases are handled, including the necessity of an else clause.
- Introduced the interface injection pattern to allow pluggable operations in table-level code.
- Recommended using Confirm Management for user confirmations to improve testability.
- Established a three-permission set pattern for security to ensure proper access control.
- Created a review skill for CMFRT AL standards to automate compliance checks against established guidelines.
2026-07-02 13:12:09 +00:00

35 lines
1.1 KiB
AL

// Step 1: Objects set — owns all AL objects with execute access.
permissionset 2045222 "CMFRT GD Objects"
{
Assignable = true;
Caption = 'CMFRT GD Geodynamics - Objects';
Permissions =
table "CMFRT GD POI" = X,
table "CMFRT GD Setup" = X,
page "CMFRT GD POI" = X,
page "CMFRT GD Setup" = X,
codeunit "CMFRT GD IGeodynamics" = X,
codeunit "CMFRT GD IGeodynamics Impl" = X;
}
// Step 2: Read set — inherits object access, adds tabledata read.
permissionset 2045221 "CMFRT GD Read"
{
Assignable = true;
Caption = 'CMFRT GD Geodynamics - Read';
IncludedPermissionSets = "CMFRT GD Objects";
Permissions =
tabledata "CMFRT GD POI" = R,
tabledata "CMFRT GD Setup" = R;
}
// Step 3: Edit set — inherits Read, adds insert/modify/delete.
permissionset 2045226 "CMFRT GD Edit"
{
Assignable = true;
Caption = 'CMFRT GD Geodynamics - Edit';
IncludedPermissionSets = "CMFRT GD Read";
Permissions =
tabledata "CMFRT GD POI" = IMD,
tabledata "CMFRT GD Setup" = IMD;
}