Help

Table Of Contents
Protecting databases
F
ILEMAKER PRO HELP 451
You cannot change or delete these predefined privilege sets, except to enable or disable extended
privileges for them. You can either use them as is, or duplicate them and then modify the duplicate
copies.
The following table summarizes the properties of these privilege sets. For more information about
these properties, see
Editing record access privileges, Editing layouts privileges, Editing value list
privileges, Editing scripts privileges, Editing extended privileges for a privilege set, and Editing other
privileges.
Note The Full Access privilege set is the only one that permits access to the Manage Database
dialog box in order to modify
fields, tables, relationships, and data sources. It is also the only
privilege set that permits changing accounts and privileges. Because you cannot enable these
privileges in any other privilege set, any user that wants to make database definition changes or
privileges changes must open the file with an
account that is assigned the Full Access privilege set.
At least one active, FileMaker-authenticated account in each file must be assigned the Full Access
privilege set. An error message will appear if you edit accounts so that no active account is assigned
the Full Access privilege set.
Planning security for a file
A new FileMaker Pro file is initially unprotected. Whenever the file opens, it automatically logs in the
user with the Admin
account, which is assigned the Full Access privilege set. This permits accessing
and changing everything in the file.
You can use accounts and privilege sets to secure the database file. How you secure a file depends
largely on whether you share the file with others or not:
If you simply want to keep someone else from opening a database file on your computer,
you can password-protect the file. See
Password-protecting a file.
Privilege
Full Access
privilege set
Data Entry Only
privilege set
Read-Only Access
privilege set
Records (in all tables) create, edit, delete create, edit, delete view only
Layouts all modifiable view only view only
Value lists all modifiable view only view only
Scripts all modifiable
and executable
all executable only all executable only
Extended privileges all off, except
fmreauthenticate10
all off, except
fmreauthenticate10
all off, except
fmreauthenticate10
Allow printing on on on
Allow exporting on on on
Manage extended privileges on off off
Override data validation warnings on off off
Disconnect user from server when
idle
off on on
Allow password modification on on on
Password change number of days off off off
Minimum password length off off off
Available menu commands All All All