Permissions - General

On the General tab, the permissions can be configured for:

System Settings: Mostly security settings are made here.

News: Permissions to articles informing users about news and announcements can be specified here.

Search templates: Permissions to search templates that have been created via the Extended search can be configured here.

User/Group: Special permissions of groups to groups can be configured here.

Workflows: Permissions to existing workflows or default values for new workflows can be assigned here.

Reports: Permissions to reports and default settings for new reports for groups can be defined here.

Early Warning: Permissions to early warning rules can be configured here.

 

System Settings

On the System Settings tab, mainly security settings are made, e.g. which user group can see and use which module configurations.

If not mentioned otherwise, the permissions Full Control and Administrate Rights have the same functions everywhere.

In general, the Show permission only allows for displaying functions. If an option is to be edited by a user group as well, the permission type Change Settings or similar is to be selected.

446 settings user management permissions general

In addition, with configured Navigation Extensions you are free to change the permissions for the extension here:

446 settings user management permissions navigation extensions

Within 'Location of use' you see the registered location where the extension will be displayed:

  • Left Menu (446 Plattform only)

  • Top Menu (446 Plattform Mobil only)

  • Top User Menu (446 Plattform Mobil only)

More information regarding the setup of Navigation Extensions can be found in Extension of the left navigation menu with custom buttons and Integration into the 446 Plattform® user interface.

 

When the permissions of a group are accessed, the system settings are displayed first. Whenever an individual permission is to be changed, a simple click on it will suffice.

 

 

News

Here, it is possible to define, which information and news will be displayed to which group. Pre-settings, which will influence any newly created news item in this category but not the already existing ones, can be made for categories. For already existing news items, a selection can be made for each one individually below the categories.

 

Filters

Search templates created via the extended search can be enabled for the currently selected group.

 

User/Group

Under User/Group it is possible to define whether the currently selected group can exercise rights on certain other groups. If, however, a user is selected for display, permissions will only be displayed but cannot be changed.

Via Choose user/group, the group to be edited can be selected. Via Configured the already configured groups can be displayed.

 

 

Distinctive Features of "Administrate Rights" and "Full Control"

If a group A has the permission Administrate rights for a certain option and a group B is selected on the User/Group tab, group A can pass on to or deny group B the permissions Change settings and, if applicable, View.

If a group A has the permission Full Control and a group B is configured on the User/Group tab, group A can pass on the permissions Administrate rights, Change settings and, if applicable, View to group B for the selected options. Thus, group B can pass on the permissions Change settings and, if applicable, View to a group C. Group C, however, cannot pass on any permissions.

Example:

In the following example, a test group has received full control over the group User CMO (Isonet) on the User/Group tab.

Simultaneously, full control is activated for all CMDB-relevant permissions under System settings and the access to the User Management enabled:

So, if a user in the test group is logged in, he does not only have access to the CMDB settings and the CMDB as such, but also to the access permissions of the group CMDB users.

All permissions the test group has Full control to can now be passed on with the permissions Administrate rights or lower:

Note:

As the group Testgroup has been given full control over the group CMDB Users as well, it could assign it with more permissions under User/Groups than may be desirable.

 

Workflows

This setting grants access to the workflows under Settings > Workflow Management > Workflow Management. The following permissions can be set for existing workflows or as a default for new workflows:

Full control/Administrate rights: See User/Group.

Edit: Workflows will not only be displayed, but can be edited by using the Workflow Designer tool or the web interface as well.

Batch processing: The user is permitted to move several tickets, configuration elements, knowledge articles or expenses into an event workflow at the same time. The maximum number of elements that can be processed simultaneously is set in the global configuration.

Show: The workflow will be displayed for group members in the Workflow Management.

 

Reports

The Reports tab allows for configuring which user groups can view reports. The reports can be accessed by selecting Reports from the module links at the bottom of the screen.

A permission that is only set to Allowed for the entire reporting group does not affect the permissions of individual, already created reports. For new reports in this group, however, all permissions set for the entire group will be set to Allowed automatically and enable users to access them. If the settings for all created reports in a category are to be changed, double click on the permissions of this category. Thus, all reports will receive the same permission settings.

 

Early Warning

On the Early warning tab, it is possible to specify for groups, to which early warning rules saved as a template previously their group members can subscribe. If a user will subscribe to one of these rules later on, he will receive an e-mail notification as soon as the early warning system will be triggered.

 

Apps

The Apps tab lists the installed applications and manages access to them.

 

Calendar

This tab lists the permissions for the corresponding actions to manage the calendar.