{"id":37813,"date":"2018-04-20T12:08:08","date_gmt":"2018-04-20T04:08:08","guid":{"rendered":"http:\/\/localhost\/help\/?page_id=37813"},"modified":"2024-07-05T10:07:59","modified_gmt":"2024-07-05T02:07:59","slug":"change-a-roles-privileges","status":"publish","type":"page","link":"https:\/\/oihelp.corporate.ifs.com\/help\/p2-server\/security\/change-a-roles-privileges\/","title":{"rendered":"Change a Role&#8217;s Privileges"},"content":{"rendered":"\n<p class=\"left-bar\">This article applies to versions 4.6 and later of IFS OI Explorer.<\/p>\n<h2 class=\"page-subheading\">Overview<\/h2>\n<p class=\"overview\">After creating a role and assigning resource-level or module-level privileges, you may need to adjust these privileges to cater for new resources or modules.<\/p>\n<p class=\"intro-text\">Resource-level privileges override any object-level privileges, so users with this role will be able to see all objects of the specified resource, regardless of object-level privileges.\u00a0<\/p>\n<p class=\"intro-text\">In order to be able to assign roles, a user must be a Security administrator.<\/p>\n<p class=\"left-bar\">Read more: <a href=\"https:\/\/oihelp.corporate.ifs.com\/help\/p2-server\/security\/how-security-works\/\">How Security Works<\/a>, <a href=\"https:\/\/oihelp.corporate.ifs.com\/help\/p2-server\/security\/how-roles-work\/\">How Roles Work<\/a>, <a href=\"https:\/\/oihelp.corporate.ifs.com\/help\/p2-server\/security\/create-a-role-with-privileges\/\">Creating a Role<\/a>, <a href=\"https:\/\/oihelp.corporate.ifs.com\/help\/p2-server\/security\/add-an-administrator\/\">Add an Administrator<\/a>, <a href=\"https:\/\/oihelp.corporate.ifs.com\/help\/p2-server\/security\/how-object-access-works\/\">How Object Access Works<\/a><\/p>\n<p class=\"intro-text\">This article explains how to modify the resource-level privileges associated with an existing role.<\/p>\n<p class=\"note\">Note: After changing a user's privileges, the user will receive the updated privileges in a hour, or they can log out and back in to receive them immediately.<\/p>\n<hr \/>\n<h2 class=\"page-subheading\">Changing Privileges for a Role<\/h2>\n<p class=\"intro-text\">1. Open IFS OI Server Management, and click the <b>Security\u00a0<img loading=\"lazy\" decoding=\"async\" class=\"alignnone wp-image-37821 size-full\" src=\"https:\/\/oihelp.corporate.ifs.com\/help\/wp-content\/uploads\/2018\/03\/security-lock-icon.png\" sizes=\"auto, (max-width: 22px) 100vw, 22px\" srcset=\"https:\/\/oihelp.corporate.ifs.com\/help\/wp-content\/uploads\/2018\/03\/security-lock-icon.png 22w, https:\/\/oihelp.corporate.ifs.com\/help\/wp-content\/uploads\/2018\/03\/security-lock-icon-20x24.png 20w\" alt=\"\" width=\"22\" height=\"26\" \/><\/b>\u00a0icon.\u00a0<\/p>\n<p class=\"intro-text\">2. Click\u00a0<strong>Role Privileges\u00a0<img loading=\"lazy\" decoding=\"async\" class=\"alignnone wp-image-37839 size-full\" src=\"https:\/\/oihelp.corporate.ifs.com\/help\/wp-content\/uploads\/2018\/04\/role-privileges-icon.png\" alt=\"\" width=\"14\" height=\"18\" \/><\/strong>.<\/p>\n<p class=\"intro-text\">3. Click the role in the list that you want to modify.<\/p>\n<p><a href=\"https:\/\/oihelp.corporate.ifs.com\/help\/wp-content\/uploads\/2018\/04\/security-46-role-priv-modify.png\" rel=\"lightbox-0\"><img loading=\"lazy\" decoding=\"async\" class=\"alignnone size-full wp-image-37908\" src=\"https:\/\/oihelp.corporate.ifs.com\/help\/wp-content\/uploads\/2018\/04\/security-46-role-priv-modify.png\" alt=\"\" width=\"1428\" height=\"690\" srcset=\"https:\/\/oihelp.corporate.ifs.com\/help\/wp-content\/uploads\/2018\/04\/security-46-role-priv-modify.png 1428w, https:\/\/oihelp.corporate.ifs.com\/help\/wp-content\/uploads\/2018\/04\/security-46-role-priv-modify-768x371.png 768w, https:\/\/oihelp.corporate.ifs.com\/help\/wp-content\/uploads\/2018\/04\/security-46-role-priv-modify-150x72.png 150w, https:\/\/oihelp.corporate.ifs.com\/help\/wp-content\/uploads\/2018\/04\/security-46-role-priv-modify-1280x618.png 1280w, https:\/\/oihelp.corporate.ifs.com\/help\/wp-content\/uploads\/2018\/04\/security-46-role-priv-modify-24x12.png 24w, https:\/\/oihelp.corporate.ifs.com\/help\/wp-content\/uploads\/2018\/04\/security-46-role-priv-modify-36x17.png 36w, https:\/\/oihelp.corporate.ifs.com\/help\/wp-content\/uploads\/2018\/04\/security-46-role-priv-modify-48x23.png 48w\" sizes=\"auto, (max-width: 1428px) 100vw, 1428px\" \/><\/a><\/p>\n<p class=\"intro-text\">The page updates with the privileges matrix for modules and resources.\u00a0<\/p>\n<p class=\"intro-text\">4. In the <strong>Privileges<\/strong> matrix, change the privileges you want to assign to this role. E.g. You might also want Calculation Editors to be able to edit Units.\u00a0<\/p>\n<p class=\"intro-text\" style=\"padding-left: 30px;\"><strong>What the Colours Mean<\/strong><\/p>\n<p class=\"intro-text\" style=\"padding-left: 30px;\">The privileges matrix is colour-coded to indicate the cascading nature of privileges. The colours are:<\/p>\n<p class=\"intro-text\" style=\"padding-left: 30px;\"><img loading=\"lazy\" decoding=\"async\" class=\"alignnone wp-image-37926 size-full\" src=\"https:\/\/oihelp.corporate.ifs.com\/help\/wp-content\/uploads\/2018\/04\/sec-grey.png\" alt=\"\" width=\"20\" height=\"20\" \/>\u00a0Grey: Privilege not granted<br \/>\n<img loading=\"lazy\" decoding=\"async\" class=\"alignnone wp-image-37927 size-full\" src=\"https:\/\/oihelp.corporate.ifs.com\/help\/wp-content\/uploads\/2018\/04\/sec-green.png\" alt=\"\" width=\"20\" height=\"20\" \/>\u00a0Green tick: Privilege is explicitly granted, associated privileges will also be automatically granted. <br \/>\n<img loading=\"lazy\" decoding=\"async\" class=\"alignnone wp-image-37931 size-full\" src=\"https:\/\/oihelp.corporate.ifs.com\/help\/wp-content\/uploads\/2018\/04\/sec-green-dot.png\" alt=\"\" width=\"20\" height=\"20\" \/>\u00a0Green dot: Privilege is granted because a higher level privilege has been granted on the resource.<br \/>\n<img loading=\"lazy\" decoding=\"async\" class=\"alignnone wp-image-37928 size-full\" src=\"https:\/\/oihelp.corporate.ifs.com\/help\/wp-content\/uploads\/2018\/04\/sec-blue.png\" alt=\"\" width=\"20\" height=\"20\" \/>\u00a0Blue: Privilege is granted because it is inherited by a module privilege.<\/p>\n<p class=\"note\">Note: For the Write privilege on datasources, the Write flag must also be enabled on the datasource for this to take effect. If the flag is not enabled, this privilege will have no effect.<\/p>\n<p class=\"intro-text\">5. When you have finished, click <strong>Save<\/strong> in the top right corner.<\/p>\n<p class=\"intro-text\">The privileges for this role has now changed. The user will receive updated privileges in a hour, or they can log out and back in to receive them immediately.<\/p>\n<p>&nbsp;<\/p>\n","protected":false},"excerpt":{"rendered":"<p>After creating a role and assigning resource-level privileges, you may need to adjust these privileges to cater for new resources or modules. This article explains how to modify the resource-level privileges associated with an existing role.<\/p>\n<p class=\"continue-reading-button\"> <a class=\"continue-reading-link\" href=\"https:\/\/oihelp.corporate.ifs.com\/help\/p2-server\/security\/change-a-roles-privileges\/\">Read more<i class=\"crycon-right-dir\"><\/i><\/a><\/p>\n","protected":false},"author":1,"featured_media":37818,"parent":3652,"menu_order":15,"comment_status":"closed","ping_status":"closed","template":"","meta":{"footnotes":"","_members_access_role":[],"_members_access_error":""},"categories":[11],"tags":[634,633,196],"class_list":["post-37813","page","type-page","status-publish","has-post-thumbnail","hentry","category-tutorial","tag-privileges","tag-roles","tag-security","Version-4-6-0","Product-ex"],"_links":{"self":[{"href":"https:\/\/oihelp.corporate.ifs.com\/help\/wp-json\/wp\/v2\/pages\/37813","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/oihelp.corporate.ifs.com\/help\/wp-json\/wp\/v2\/pages"}],"about":[{"href":"https:\/\/oihelp.corporate.ifs.com\/help\/wp-json\/wp\/v2\/types\/page"}],"author":[{"embeddable":true,"href":"https:\/\/oihelp.corporate.ifs.com\/help\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/oihelp.corporate.ifs.com\/help\/wp-json\/wp\/v2\/comments?post=37813"}],"version-history":[{"count":2,"href":"https:\/\/oihelp.corporate.ifs.com\/help\/wp-json\/wp\/v2\/pages\/37813\/revisions"}],"predecessor-version":[{"id":67809,"href":"https:\/\/oihelp.corporate.ifs.com\/help\/wp-json\/wp\/v2\/pages\/37813\/revisions\/67809"}],"up":[{"embeddable":true,"href":"https:\/\/oihelp.corporate.ifs.com\/help\/wp-json\/wp\/v2\/pages\/3652"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/oihelp.corporate.ifs.com\/help\/wp-json\/wp\/v2\/media\/37818"}],"wp:attachment":[{"href":"https:\/\/oihelp.corporate.ifs.com\/help\/wp-json\/wp\/v2\/media?parent=37813"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/oihelp.corporate.ifs.com\/help\/wp-json\/wp\/v2\/categories?post=37813"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/oihelp.corporate.ifs.com\/help\/wp-json\/wp\/v2\/tags?post=37813"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}