Veritas Data Insight User's Guide
- Section I. Introduction
- Section II. Data Insight Workspace
- Navigating the Workspace tab
- Analyzing data using the Workspace views
- Viewing access information for files and folders
- About viewing file or folder summary
- Viewing the overview of a data source
- Managing data custodian for paths
- Viewing user activity on files or folders
- Viewing file and folder activity
- Viewing CIFS permissions on folders
- Viewing NFS permissions on folders
- Viewing SharePoint permissions for folders
- Viewing OneDrive permissions for folders
- Viewing Box permissions on folders
- Viewing audit logs for files and folders
- About visualizing collaboration on a share
- Viewing access information for users and user groups
- Viewing the overview of a user
- Viewing the overview of a group
- Managing custodian assignments for users
- Viewing folder activity by users
- Viewing CIFS permissions for users
- Viewing CIFS permissions for user groups
- Viewing NFS permissions for users and user groups
- Viewing SharePoint permissions for users and user groups
- Viewing Box permissions for users and user groups
- Viewing audit logs for users
- Section III. Data Insight reports
- Using Data Insight reports
- About Data Insight reports
- How Data Insight reporting works
- Creating a report
- About Data Insight security reports
- Activity Details report
- Permissions reports
- Inactive Users
- Path Permissions
- Permissions Search report
- About Permissions Query templates
- Creating a Permissions Query Template
- Creating custom rules
- Permissions Query Template actions
- Using Permissions Search report output to remediate permissions
- Entitlement Review
- User/Group Permissions
- Group Change Impact Analysis
- Ownership Reports
- Create/Edit security report options
- About Data Insight storage reports
- Create/Edit storage report options
- About Data Insight custom reports
- Considerations for importing paths using a CSV file
- Managing reports
- About managing Data Insight reports
- Viewing reports
- Filtering a report
- Editing a report
- About sharing reports
- Copying a report
- Running a report
- Viewing the progress of a report
- Customizing a report output
- Configuring a report to generate a truncated output
- Sending a report by email
- Automatically archiving reports
- Canceling a report run
- Deleting a report
- Considerations for viewing reports
- Organizing reports using labels
- Using Data Insight reports
- Section IV. Remediation
- Configuring remediation workflows
- About remediation workflows
- Prerequisites for configuring remediation workflows
- Configuring Self-Service Portal settings
- About workflow templates
- Managing workflow templates
- Creating a workflow using a template
- Managing workflows
- Auditing workflow paths
- Monitoring the progress of a workflow
- Remediating workflow paths
- Using the Self-Service Portal
- About the Self-Service Portal
- Logging in to the Self-Service Portal
- Using the Self-Service Portal to review user entitlements
- Using the Self-Service Portal to manage Data Loss Prevention (DLP) incidents
- Using the Self-Service Portal to confirm ownership of resources
- Using the Self-Service Portal to classify sensitive data
- Managing data
- About managing data using Enterprise Vault and custom scripts
- Managing data from the Shares list view
- Managing inactive data from the Folder Activity tab
- Managing inactive data by using a report
- Archiving workflow paths using Enterprise Vault
- Using custom scripts to manage data
- Pushing classification tags while archiving files into Enterprise Vault
- About adding tags to devices, files, folders, and shares
- Managing permissions
- Configuring remediation workflows
- Appendix A. Command Line Reference
- Index
About Box permissions
Data Insight enables visualization and analytics of permissions assigned on Box resources. Visibility into Box permissions enables you to ensure security, minimize the possibility of a data breach, and ensure that the right people have access to the right data.
Box permissions work a little differently than the permissions set on a file server. On a file server, you can specify a different permission at each level of the folder hierarchy. In case of Box resources, the users and groups are assigned access levels that provide a set of permissions on a folder. Typically the subfolders have the same access level as the parent folder .The permissions associated with an access level are nothing but the actions allowed to the users or groups on that Box resource (folder). The access level assigned to a user or group on a parent folder automatically cascades to the child folder(s), unless a sub-folder is specifically assigned a different access level.
Table: Box Permissions describes the various access levels in Box.
Table: Box Permissions
Access level | Permission |
|---|---|
Editor | View, download, upload, edit, delete, copy, move, rename, generate shared links , make comments, assign tasks, create tags, and invite/remove collaborators. Users with this access level can not delete or move root level folder. |
Viewer | Preview, download, make comments, and generate shared links. Users with this access level can not add tags, invite new collaborators, upload, edit, or delete items in the folder. |
Previewer | Preview the items in the folder using the integrated content viewer. Users with this access level can not share, upload, edit, or delete any content. |
Uploader | Upload and see the names of the items in a folder. They will not able to download or view any content. |
Previewer-Uploader | Preview files using the integrated content viewer as well as upload items into the folder. Users with this access level can not download, edit, or share, items in the folder. |
Viewer-Uploader | Preview, download, add comments, generate shared links, and upload content to the folder. They will not be able to add tags, invite new collaborators, edit, or delete items in the folder. |
Co-owner | All of the functional read/write access that an Editor has. Users with this access level can manage users in the folder. A Co-Owner can add new collaborators, change access levels of existing collaborators, and remove collaborators. However, a co-owner cannot manipulate the user with owner permission on the folder or transfer ownership to another user. |
Owner | All rights. |
For the latest list of Box permissions, refer to Box documentation.
Data Insight displays the access levels for users and the paths on which unique permissions are set. Data Insight does not distinguish between privately owned and collaborative folders in the folder and user centric views. A lock icon on a folder signifies unique permission, otherwise inherited from owner.