Security Features of the App
- Default Security Features in SAS Software
- Security Options Available for SAS Administrators
- Security Features Provided by the App or Mobile Devices
- More Security Options
To secure reports and data on your devices, use the following features provided by SAS Visual Analytics, SAS Visual Analytics App, and other SAS software.
Default Security Features in SAS Software
The following features are provided by the software installation:
- Users must authenticate in order to
add a server.
Note: Depending on your installation, authentication can be against the metadata server’s authentication provider or the web application server’s authentication provider.
- SAS metadata security is enforced on all reports.
Security Options Available for SAS Administrators
SAS administrators can control how a mobile device running SAS Visual Analytics App can access reports and data located on a SAS Visual Analytics server. You can use features, capabilities, and properties (alone or in combination) to control access to the server data and reports from the app.
- Disable the ability to view reports on
mobile devices.
SAS Visual Analytics server version
Documentation
2020.1 or later
Remove the ability to view reports on mobile devices per group or user by using the /SASMobileBI/** object URI.
See SAS Visual Analytics: Reference > Managing Access to Functionality.
8.3, 8.4, or 8.5
Remove the ability to view reports on mobile devices per group or user by using the /SASMobileBI/** object URI.
See Rules to Control Access to SAS Visual Analytics App Functionality.
7.5
Create an empty allowlist. Because the allowlist contains no mobile devices, it prevents any mobile device from accessing the server and its reports.
Tip Be sure to enforce the allowlist. By default, the denylist is enforced.
See Enable or Prevent Access by Using the Allowlist and Denylist.
- Functionality in SAS Visual Analytics
App can be limited per user. You can control whether a user can add
and view reports, share links to reports by using email, add or view comments,
see and use the Favorites or Recent views, and more.
SAS Visual Analytics server version
Documentation
2020.1 or later
8.3, 8.4, or 8.5
7.5
- You can encrypt connections between
mobile devices and SAS servers using Transport Layer Security (TLS).
SAS Visual Analytics server version
Documentation
2020.1 or later
SAS Viya Platform: Security Administration > Encryption > Data in Motion > How To
8.3, 8.4, or 8.5
7.5
- Use allowlists and denylists to enable
or prevent access to the server.
SAS Visual Analytics server version
Documentation
2020.1 or later
8.3, 8.4, or 8.5
7.5
Enable or Prevent Access by Using the Allowlist and Denylist
For allowlist information for app users, see About the Allowlist.
- Require SAS Visual Analytics
App users to lock the app with a passcode.
SAS Visual Analytics server version
Documentation
2020.1 or later
8.3, 8.4, or 8.5
7.5
- To minimize access by users with
revoked credentials, require server credentials after a user has not logged on
for a specified period of time.
SAS Visual Analytics server version
Documentation
2020.1 or later
8.3, 8.4, or 8.5
7.5
- To minimize persistence of mobile
data, specify that a user must maintain a network connection to the server while
viewing a report in SAS Visual Analytics
App.
SAS Visual Analytics server version
Documentation
2020.1 or later
8.3, 8.4, or 8.5
7.5
For app user information, see Remote Data Availability and Report Security.
Security Features Provided by the App or Mobile Devices
SAS Visual Analytics App and the mobile devices on which it runs provide these additional security features:
- Password security varies depending on the version of SAS Visual Analytics running on the server. For more information, see Password Security.
- Encrypt reports and data.
The operating system on the mobile device encrypts the content on the device. SAS Visual Analytics reports and data are encrypted with the rest of the contents on the device.
- Some mobile devices provide face recognition (Face ID), fingerprint recognition (Touch ID), or other biometric technology.
- Device passcodes
More Security Options
Your IT department can require the use of the following technologies to increase mobile device security:
- Secure Sockets Layer (SSL)
- Virtual Private Network (VPN)
- Mobile Device Management (MDM) technology such as Mobile Iron