Security in OpenERP
Security is a major concern when any application is considered. As of OpenERP, security is an important factor and it is easy to provide security in modular basis.
Group-based Access Control
Groups can be created as normal records and menu access may be granted via menu definitions. However, even without a menu, objects may be accessible indirectly. In order to prevent this, object level permissions must be defined for groups. These permissions are usually inserted via CSV files in the security folder inside modules. The example below provide a basic view of providing group based access rights.
Defining Groups
Defining Access Rights ( ir.model.access.csv )
Menu Access definition
Also, don't forget to include the xml files in the OpenERP Descriptor File.