The Groups tab in the Access Controller Desktop Online dashboard will allow you to create new access groups, update existing access groups and remove an access group.
These actions will require a user to have Write permission for Access Controller.
Users with the Execute permission can only view the access groups.
Groups Table
A list of access groups will be displayed in the Groups Table when clicking into the Groups tab.
Administrator is a predefined access group. By default, this group has full access to all the activities and functions in the system and it cannot be deleted. You are only permitted to change the Access Controller permissions for the Administrator group.
Add Group
To add a new group to the system:
- Click button.
- Fill in the details according to the description below and click Save button.
Setting | Description |
---|---|
Name | Enter the name of the group. Valid characters are: A-Z, a-z, 0-9, '-' and '_' |
Description | Descriptive information about the group. |
Allow Access Through SCIM | Check to enable access through SCIM API. Refer SCIM(3.2) |
Application | This column is a list of the all applications in the system. |
Execute | Check to enable the members of the access group to start an instance of the relevant application or view the data. Clear to prohibit the access group members from using it. |
Write | Check to enable the members of the access group to edit and save a configuration within the relevant application. Clear to prohibit the user from doing so. Note! The main Desktop menu is divided into Build and Manage views where under Manage view, it is further divided into Data Management and Tools & Monitoring. The Build view enables you to create configurations. Data Management enables you to view data that is produced by workflows. Tools & Monitoring enables you to view data that is generated by the system. When you define an Access Group in the Access Controller, you can only check Write for Inspection- and Tools applications, so that users are able to manipulate data that is either generated by a workflow, or by the system. Configuration Write access is set per configuration from the Set Permissions view. For further information see Properties in Browser(3.2). |
A drop down menu that allows the user to filter on application type. Options are ALL, CONFIGURATION, INSPECTOR, TOOL, WEB, WEB_API. | |
Select All | Enables Write (if applicable) and Execute for all permissions in the chosen category. |
Disables Write and Execute for all permissions in the chosen category. |
For information about how to modify configuration permissions, see Browser(3.2).
Note!
For LDAP users to be able to login, you will have to create an Access Group with the same name as the LDAP Group name that is tied to the LDAP user.
Access Controller - Add New Access Group screen
Edit Group
To add edit a group in the system:
- Click button on the selected Group.
- Make changes and click Save button.
Info!
Group Name cannot be changed.
Access Controller - Edit Access Group screen
Delete Group
To add edit a group in the system:
- Click button on the selected Group.
- Click Delete button on the confirmation message.
Note!
The Administrator Group is not allowed to be deleted.
Access Controller - Delete Access Group confirmation message
Add Comment