Hi Jeff,
There is - to my knowledge - still no out of the box solution for this. Not sure if tools like Meta Manager or Motio can achieve this nowadays.
Most settings in Cognos can easily be found somewhere in the Content Store database. However, the security policies are written encoded in hex, and you can't simply edit them via scripts.
I have been regularly asked by our clients to implement an additional Audit framework. In this 'element61 Audit' tables, one can not only see executed report information, but also the real content on the system, and one can link both. We also in this way undoubled the log data for user activity (by default it shows logon timestamps and logoff timestamps, and not real logged in timings), and added several KPI's which were not available by default.
As an add-on to this, upon specific request of one of our clients, I built a solution a few years ago that decoded the security of each report/folder, and was able to list it in the Audit tables. We were even able to then use these helper functions to automatically look for specific users/roles in the security and adapt them automatically. The client was running 2000+ reports in 1000+ folders, so the research was worth it, instead of trying to manually adapt this one by one.
On the negative side, my scripts were specific for a SQL Server Database. Any other database would need quite some work on changing the scripts.
It will take several days of work to get this same solution working for another client. And time is an issue in my fully packed agenda.
I would look into MetaManager to see if they can help out on this.
If not, if you are interested to talk about this, please contact my company (www.element61.be) and ask for the IBM Cognos department to look into aiding you in this.
Kind regards,
Joeri
------------------------------
Joeri Willems
------------------------------