In order to give users the possibility to create Information Links with some Elements coming from a Data Source, then we have to grant them a full access (Browse + Access permission) to the Data Source: implying them to be able to see the connection string to the db, the full db schema, and to be able to query data on ANY table of the schema.
--> it would be nice to let them create Information Links, with only an Access permission on the Data Source, but a Browse+Access permission on a subset of Elements coming from this Data Source
This would allow more flexibility ans shareability , because the users would be able to create Information Links using the same Data Sources as the Spotfire admin. I.e.: no need to create a specific Data Source with degraded rights on the the db (using for instance another connection credentials)
Why not put all the source elements they are allowed to in a set of folders they have access to, not not all of the data source. Its not necessary to duplicate the source
I think such a change would violate other required security controls.