---
sourceDocument: Australia Platform security
sourceDocumentLink: https://servicenow-prod.fluidtopics.net/r/de-DE/platform-security

 Release :

    - australia

ft:locale :

    - de-DE

ft:publication_title :

    - Australia Platform security

ft:clusterId :

    - psec

bundleId :

    - psec

workflow :

    - Platform


---

# Configure Service Portal Widgets Table Allow List \[New in Security Center 2.0\]

# Configure Service Portal Widgets Table Allow List \[New in Security Center 2.0\] {#ariaid-title1}

* Freigeben Version: Australia
* 
* Aktualisiert 12. März 2026
* 
* ![](https://www.servicenow.com/docs/portal-asset/ico-clock) 1 Minute Lesedauer

Learn how the glide.service_portal.widget.table_allow_list
property enhances security by listing tables accessible to unauthenticated users through
Service Portal widgets, dependent on additional checks and specific glide property
settings.
The glide.service_portal.widget.table_allow_list property
contains a list of tables that unauthenticated users can access through Service
Portal widgets, which utilize the additional security checks in the SNCACLWidgetUtil
script. This property is enforced only if the glide property
glide.service_portal.widget.enforce_public_check is set to
true. Including unnecessary tables in this property may lead to the disclosure of
sensitive information. Nonetheless, Table ACLs will continue to be evaluated as they
were previously.

## More information {#sc_configure_service_portal_widgets_table_allow_list__section_qhx_1b1_xwb}

{#sc_configure_service_portal_widgets_table_allow_list__table_ajc_b43_3kb__entry__2}

| Attribute | Description |
|-|-|
| Configuration name | glide.service_portal.widget.table_allow_list |
| Configuration type | System Properties (/sys_properties_list.do) |
| Data type | Boolean |
| Recommended value | true |
| Default value | false |
| Category | [Access control](https://servicenow-prod.fluidtopics.net/xAmazkRh5FKyeb7q4TQGWw "The access control category audits the process of protecting resources from unauthorized access through granting and denying requests based on a permission model. This includes ensuring an entity accessing a resource holds valid credentials to do so, creating and protecting a well-defined set of roles or permissions and ensuring role or permission controls are protected from replay and tampering.") |
| Security risk | * Severity score: 3.7 * CVSS score: Low * Security risk details: If this property is not set to the secure value, unnecessary tables may be included, potentially leading to the disclosure of sensitive information. {#sc_configure_service_portal_widgets_table_allow_list__ul_g1g_3sf_xwb} |
| Dependencies and prerequisites | The glide.service_portal.widget.enforce_public_check property must be set to true for the glide.service_portal.widget.table_allow_list setting to take effect. |
| Functional impact | The table list controls access to the tables from which the widget is allowed to retrieve data. |
[ ]

{#sc_configure_service_portal_widgets_table_allow_list__table_ajc_b43_3kb}

