After you add an attachment category to a case type, you can configure it to restrict user operations. This enables security on the items that are attached to cases in your application.
Open the attachment category rule that supports your case type.
On the Availability tab, select a check box for each attachment type that is supported by your attachment category.
Caution: Your attachment category is inaccessible if you do not select at least one check box.
On the Security tab, define how user operations are restricted. You can provide any combination of privileges and when conditions.
Click + Add privilege to add a new row to the grid.
In the SmartPrompt field in the Privilege column, press the Down Arrow key and select the name of a privilege.
Alternatively, you can enter a unique name and click the magnifying glass icon to create a new privilege.
Select a check box in one or more columns, based on the user operations that are granted by your specified privilege.
For example, select the check box in the Delete own column to allow users to delete attachments that they have created.
Repeat steps 1-3 for each privilege to consider at run time.
Click + Add when to add a new row to the grid.
In the SmartPrompt field in the When column, press the Down Arrow key and select the name of a when condition.
Alternatively, you can enter a unique name and click the magnifying glass icon to create a new when condition.
Select a check box in one or more columns, based on the user operations that are granted by your specified privilege.
For example, select the check box in the Create column to allow users to add attachments to a case.
Repeat steps 1-3 for each when condition to consider at run time.
Optional: Select the Enable attachment-level security check box.
This allows users to list the work groups that can access an individual attachment after it has been added to a case.
Click Save.
At run time, supported attachment types are associated with your attachment category. Each user must then meet all of the following requirements before performing a restricted operation:
The user holds at least one of the required privileges.
All the specified when conditions return a true value.
The user is associated with a required work group.
If any of the requirements is not met, a warning is displayed or the relevant option, such as the delete icon, is disabled.