User Role Assignment
[Rate this topic]

The User Role Assignment setting in User Administration module enables the user administrator to grant or deny users direct access to specific projects in Architect or Volumes in Architect Global Library based on a security role.  

 

There are two ways a user administrator can assign a user to a role and an Architect project or Global Library volume in the User Administration module:

 

 

In the event a user is assigned to multiple projects or Global Library or Role combinations, the system follows a certain hierarchy to determine whether the direct role assignment or the assignment via a security group should take precedence over the other. The user's direct role assignment always  takes precedence over the group assignment.  However, if a user is assigned to a project via a group, but specifically denied access in the group, the group assignment takes precedence over the direct role assignment. Group permission is always considered last. In other words, to determine the current permission set for a user, the system gathers all the user direct permissions, adds any additional permissions via the Groups the user belongs to, and removes any permissions denied to the user in the various groups.

You can do any of the following on the User Role Assignment page

 

Note: User Role assignments in Rave are Read Only for iMedidata users. The assignments are configured in iMedidata.

 

To search permissions for users

  1. Navigate to the User Administration main page from the list of installed modules on the Home page.

  2. Select User Role Assignment from the list of User Admin Items on the left navigation bar.

 

 

The User Role Assignment main page displays.

 

 

  1. (Required) Select a Module: Options are: Architect Project or Architect Global Library. Only Roles and Actions for the selected Module will display. Default selection is Architect Project.

  2. Select an active project or global library from the Grant Access On drop down list. The list has all active projects or global libraries based on Module selected.

  3. Select a user in the Grant Access To search list. The list has all available users.

  4. Select a security role in the With Security Role drop down list. The list has all security roles currently assigned to the selected Module.

  5. Click the Search .

The system displays results that meet your search parameters with options to deny or remove the permission for a particular Project/Global Library-Group/User-Role assignment.

 

 

 

To add a new permission

  1. Select a Module in the Filter Permissions section: Options are: Architect Project or Architect Global Library.

  2. Click Add New Permission link in the Permissions Based On Filter section.

 

 

Data fields to select information for the new permission appears.

 

 

  1. Select a project or global library from the Grant Access On drop down list.

  2. Select a user from the Grant Access To search list.

  3. Select a security role from the With Selected Role drop down list.

  4. Click Update .

 

Note: Only one combination of a project or global library - user - role permission can exist.  If a second combination is assigned, the original will be overwritten.

 

  1. Check the Deny Access check box to deny the user access to the displayed project or global library.

  2. To remove the project or global library - User - Role permission, click X for the permission in the Remove column.

The system removes the permission.

 

 

      Related Topics

 

 

 

Copyright © 2014 Medidata Solutions, Inc. All rights reserved.



How do you rate this topic?