Sources Module Security
Assignments are additive
If User has access to a source by at least one rule - User is able to see the Source
If User has access to a source with some Role by at least one rule - User is able to do all operations with the Source which the Role allows
Custom Assignments
Applicable to: a Source with Custom Assignments
Access granted to:
- Users that are selected in Source page / Assignments tab
- with roles from Admin / Users / Edit dialog
- Members of User Groups that are selected in Source page / Assignments tab
- with roles from Add Assignment dialog - if Consider Roles option of User Group is enabled
- with roles from Admin / Users / Edit dialog - if Consider Roles option of User Group is disabled
Company Defaults
Applicable to: all Sources
Access granted to:
- Users that are selected in Admin / User Groups / Default User Groups page / Default Source Assignments section
- with roles from Admin / Users / Edit dialog
- Members of User Groups that are selected in Admin / User Groups / Default User Groups page / Default Source Assignments section
- with roles from Add Assignment dialog - if Consider Roles option of User Group is enabled
- with roles from Admin / Users / Edit dialog - if Consider Roles option of User Group is disabled
Inherited from Org Unit/Entity Pair
Applicable to: all Sources with selected Org Unit or Entity
Access granted to:
- Users that are given access to Source's Org Unit / Entity pair
- with roles from Admin / Users / Edit Assignments page that meet Role-Requirements
- Members of User Groups that are given access to Source's Org Unit / Entity pair
- with roles from Admin / User Groups / Edit Assignments page that meet Role-Requirements - if Consider Roles option of User Group is enabled
- with roles from Admin / Users / Edit dialog that meet Role-Requirements - if Consider Roles option of User Group is disabled
Role-Requirements:
- Source Type of Source must be selected for Role on Admin / Roles / Edit page / Source Permissions section / Type Restrictions popup
this role-requirement is applied only for Sources with Source Type selected
Note: If User or User Group is assigned to Source's Org Unit / Entity pair, but Role-Requirements are not met - user does not have access to the Source
Company-Wide Sources (shown as Inherited on Assignments Panel)
Applicable to: all Sources created for All Org Units / All Entities
Access granted to:
- All Users
- with roles from Admin / Users / Edit dialog
Owner & Responsible
Applicable to: all Sources
Access granted to:
- User that created the Source
- Responsible of Source
- with roles that user has against Source's Org Unit / Entity pair (including assignments of User Groups the user is member of)
- with roles from Admin / Users / Edit dialog - if the Source created for All Org Units / All Entities
Note: If User is not assigned to Source's Org Unit / Entity pair - user does not have access to the Source