Group Permissions
As described in Groups, the Administrators group has full permissions for all functions, system components, and support files. While you cannot delete or modify the permissions for the Administrators group, you can insert any number of new groups having any combination of permissions. If two groups are to have similar permissions, you can copy and paste one group to create the second group and then modify the permissions for this second group. You can also delete any group that you have created.
When you insert a group, you assign function, system component, and support file permissions to it. Function permissions determine whether commands for performing certain tasks are available to a group. Unless indicated otherwise, function permissions apply globally and are not specific to a given system component or support file. System component permissions determine record rights for system components. Support file permissions determine record rights for support files within a Project. For more information, see Permission Descriptions.
If a group is assigned the No Access permission for FRACAS maintenance logs, users assigned to this group do not see the Maintenance Log Table or any Maintenance Log form when they open a System file, regardless as to whether they have licensed the FRACAS module. If a group is assigned the No Access permission for List Library files, users assigned to this group cannot open List Library files.
Not having permission to access a given system component or support file does not prevent that data from being used internally. For example, even if a group is assigned the No Access permission for List Library files, members of this group can still use the choice lists in enabled List Library files to enter data in a System file. If the group has been granted the Add item to list function permission, members of this group cannot add new items to lists while entering data in the System file because they cannot open this file.
Similarly, if a group has permission for the Perform calculations function but is assigned the No Access permission for Calculation files, members of this group can perform both standard and custom calculations. However, they are unable to open a Project’s Calculation file because at least a Read Records permission is required.
Permissions for groups that are loaded from an LDAP server do not exist until they are specified in the Groups area. You cannot modify or delete the groups that come from an LDAP server. For more information, see LDAP Settings, Groups, and Users.
Related Links