• ESPC23, RAI, AMSTERDAM, Nov 27 - 30 2023
JOIN US FOR ESPC21 ONLINE

,

,

,

Book Now
  • About Us
  • Pricing
  • Login
  • Login
  • Conference
    • ESPC22 Highlights Video
    • ESPC22 Programme
    • ESPC22 Keynotes
    • ESPC22 Tutorials
    • 2023 Programme Team
    • Diversity and Inclusion Sessions at ESPC22
    • Photo Gallery
    • Code of Conduct
    • Email Updates Signup
  • Speakers
    • Submit to Speak ESPC
    • 2022 Speakers
    • Microsoft Speakers @ ESPC22
    • ESPC21 Online Speakers
    • ESPC20 Online Speakers
    • 2019 Speakers
    • 2018 Speakers
    • 2017 Speakers
  • Sponsors
    • Sponsorship Info
    • Sponsor Booking Form
    • 2023 Sponsors
    • 2022 Sponsors
  • Attendees
    • ESPC23 Venue, Accommodation & FAQ’s
    • Bring a Team
    • Why Attend ESPC
    • Convince my Boss
    • Developers @ ESPC22
    • IT PROFESSIONALS @ ESPC22
    • Business Decision Makers @ ESPC22
    • Volunteer at ESPC
    • Booking T&Cs
    • Contact Us
  • Content
    • Community Blog
    • Resource Centre
    • Community Membership
    • SharePoint Week
    • Your Guide to Microsoft Teams
    • Women in Tech
    • Microsoft Azure Week
    • Microsoft Power Platform Week
    • eBooks
    • Webinar Archive
    • Upcoming webinars
    • How To Videos
  • Power Platform Conference
  • Conference
    • ESPC22 Highlights Video
    • ESPC22 Programme
    • ESPC22 Keynotes
    • ESPC22 Tutorials
    • 2023 Programme Team
    • Diversity and Inclusion Sessions at ESPC22
    • Photo Gallery
    • Code of Conduct
    • Email Updates Signup
  • Speakers
    • Submit to Speak ESPC
    • 2022 Speakers
    • Microsoft Speakers @ ESPC22
    • ESPC21 Online Speakers
    • ESPC20 Online Speakers
    • 2019 Speakers
    • 2018 Speakers
    • 2017 Speakers
  • Sponsors
    • Sponsorship Info
    • Sponsor Booking Form
    • 2023 Sponsors
    • 2022 Sponsors
  • Attendees
    • ESPC23 Venue, Accommodation & FAQ’s
    • Bring a Team
    • Why Attend ESPC
    • Convince my Boss
    • Developers @ ESPC22
    • IT PROFESSIONALS @ ESPC22
    • Business Decision Makers @ ESPC22
    • Volunteer at ESPC
    • Booking T&Cs
    • Contact Us
  • Content
    • Community Blog
    • Resource Centre
    • Community Membership
    • SharePoint Week
    • Your Guide to Microsoft Teams
    • Women in Tech
    • Microsoft Azure Week
    • Microsoft Power Platform Week
    • eBooks
    • Webinar Archive
    • Upcoming webinars
    • How To Videos
  • Power Platform Conference
  • Keep up, Get ahead

    Join over 14,000 subscribers and 50,000 readers per month who get the latest updates and expert content from across the community.
  • You’re almost there…

  • Hidden
  • Hidden
  • This field is for validation purposes and should be left unchanged.

Gregory Zelfond 

May 29, 2017

How does permission-driven security work in SharePoint (also known as security trimming)

4 Minutes

One of the biggest concerns companies have out there is that by switching to SharePoint, companies will loose the ability to keep private data private. This is an absolutely wrong assumption. In fact, SharePoint is rock solid when it comes to security and security configuration. It uses a concept called “Security Trimming”. I personally call it permission-driven SharePoint. Let me explain what this is all about.

In pure English, what permission-driven or security trimming means is that if you don’t have access to something in SharePoint, you won’t even know it exists. For example, here is a typical scenario. You create a confidential site, like HR Private site or Executive Leadership team site. You upload some confidential documents into the sites/document libraries. Moreover, you add the site to the Intranet navigation.

And this is where SharePoint security trimming does its thing. Only those who have access to these “private” sites will see the site in the navigation. Moreover, if users do a keyword search in SharePoint, the global search will only turn up results from the sites they have access to. So if a guy from Marketing department does a keyword search in SharePoint and so does the CEO of a company, they will get different navigation and search results based on their security groups and permissions.

securitytrimming3

The same exact concept applies to Office 365 Delve. You know when you visit a user Delve page, it shows their latest activity (files, pages, and sites they last modified)? Users will only get to see the activity from sites they have access to. So if you just happened to modify somebody’s performance review, don’t worry, they will not see it in the Office 365 Delve feed. If you think about it, this works exactly like Facebook – you only get to see feeds from users you are friends with.

securitytrimming1

HOW DO I ENABLE SECURITY TRIMMING IN SHAREPOINT?

You don’t need to setup anything – it is a default behavior Out of the Box!

HOW DO I DISABLE SECURITY TRIMMING IN SHAREPOINT?

You cannot disable Search security trimming, however, you can disable Navigation security trimming. This is strongly discouraged, but if you insist – below are the instructions. Please note this only works on site collections with Publishing features enabled.

  1. Go to Gear Icon > Site Settings > Site Collection Navigation (under Site Collection Administration)
  2. Uncheck “Enable security trimming” boxsecuritytrimming2
  3. Click OK

SECURITY TRIMMING EXCEPTIONS

There are few exceptions to Navigation security trimming. Navigation security trimming will not work:

  • For navigation menu links to sites in other site collections
  • For navigation menu links built using Term Store (managed navigation)
  • For navigation links built with Links web part or Promoted Links web part
  • For navigation links created in SharePoint lists, libraries or inserted onto the pagesecuritytrimming4

Reference:
Zelfond, G.  (2017). How does permission-driven security work in SharePoint (also known as security trimming) – SharePoint Maven. [online] Available at: http://sharepointmaven.com/permission-driven-security-work-sharepoint-also-known-security-trimming/ [Accessed 23 May 2017].

Share this on...

Rate this Post:

Share:

Topics:

Security SharePoint

Tags:

Best practices Document Library Metadata Office Security User Adoption

You might also like ...

Sep 30, 2020

Security Baseline – Office Cloud Policy Service

May 26, 2020

Mitigating Security Concerns: What If You Cannot Patch?

Mar 14, 2019

Troubleshooting Azure Runbooks with Azure Resource Explorer

  • Trending Posts

  • May 20 2022 Updating SharePoint List Via Power Apps With Attachment
  • Jun 27 2022 React + TypeScript + ESLint + Prettier Full Setup
  • Jul 25 2022 Adjust the brightness and focus of your camera in Microsoft Teams video meetings
  • May 20 2022 How To Use The Graph API With SharePoint
  • Apr 13 2022 How to write nested For loop in Power Apps Canvas apps
  • Recent Posts

    • Maximising Productivity with Azure: A Guide for Developers and IT Professionals
    • Sensitivity Labels in Teams Meetings
    • How To Track and Manage Report Portfolios in Power PPM
    • Microsoft 365 Copilot Incoming – Next Generation AI
    • Azure Virtual Network explained with Terraform
  • ESPC super early bird tickets
  • Rate This Post

    Join our Mailing List!

    Join the ESPC mailing list to receive the best, free content from across the SharePoint, Office 365 & Azure community, including our monthly newsletter and the latest conference announcements. You can unsubscribe at any time with one click.
    • Sign up to receive exclusive content and analysis from the SharePoint, Office 365 & Azure community, as well as the latest conference updates and offers.

    • Hidden
    • This field is for validation purposes and should be left unchanged.

    • Conference
      • ESPC22 Programme
      • ESPC21 Online Keynotes
      • ESPC21 Online Tutorials
      • ESPC21 Online Programme
      • ESPC21 Online Programme Team
      • ESPC20 Online Programme
      • ESPC19 Highlights Video
      • 2019 Programme
      • Photo Gallery
      • Code of Conduct
    • Speakers
      • ESPC22 Speakers
      • ESPC21 Online Speakers
      • ESPC20 Online Speakers
    • Sponsors
      • ESPC21 Online Sponsors
      • ESPC21 Booking Form
      • ESPC20 Online Sponsors
      • ESPC20 Online Sponsor Videos
      • 2019 Sponsors
    • Attendees
      • Tickets & Pricing
      • ESPC21 Online FAQs
      • Contact Us
    • Content & Community
      • Resource Centre
      • Community Blog
      • Webinar Archive
      • Upcoming webinars
      • Presentations
      • How To Videos
      • eBooks
      • Email Updates Signup
      • Contribute
      • Sitemap

    sharepoint-logo

    Find us and follow us

    • © European SharePoint, Office 365 & Azure Conference, 2023
    • T&C’s
    • Cookie Policy
    • Privacy Policy
    • +353 91 416999
    By using our website you agree to our use of cookies in accordance with our cookie policy.Accept
    Privacy & Cookies Policy

    Privacy Overview

    This website uses cookies to improve your experience while you navigate through the website. Out of these, the cookies that are categorized as necessary are stored on your browser as they are essential for the working of basic functionalities of the website. We also use third-party cookies that help us analyze and understand how you use this website. These cookies will be stored in your browser only with your consent. You also have the option to opt-out of these cookies. But opting out of some of these cookies may affect your browsing experience.
    Necessary
    Always Enabled
    Necessary cookies are absolutely essential for the website to function properly. This category only includes cookies that ensures basic functionalities and security features of the website. These cookies do not store any personal information.
    Non-necessary
    Any cookies that may not be particularly necessary for the website to function and is used specifically to collect user personal data via analytics, ads, other embedded contents are termed as non-necessary cookies. It is mandatory to procure user consent prior to running these cookies on your website.
    SAVE & ACCEPT
    • Log In
    • Register

    Resource Centre Login - Content

    Forgot Password?

    Not a member yet? Create a free account

    Sign Up

    Resource Centre Login - Content

    • Already a member? Simply Login

    • Become an ESPC Community Member today to access a wealth of SharePoint, Office 365 and Azure knowledge for free. New content is added daily to the online Resource Centre, across a variety of topics and formats from Microsoft MVP’s and industry experts. With over 2,500 eBooks, webinars, presentations, how to videos and blogs, there is something to suit everyone’s learning styles and career goals.

      (All Fields Required) ** Verification Email will be sent **
      Check your Spam/Junk/Clutter folder
    • ** Verification Email will be sent **
      Check your Spam/Junk/Clutter folder
    • This field is for validation purposes and should be left unchanged.

    • Already have an account?Sign In

    • Not a member yet? Create a free accountSign Up

    Email Updates Signup

    • Sign up to receive exclusive content and analysis from the SharePoint, Office 365 & Azure community, as well as the latest conference updates and offers.

    • Hidden
    • This field is for validation purposes and should be left unchanged.

    Scroll to top

    STAY UP TO DATE - JOIN OUR MAILING LIST

    opt-in