Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.
Info

Role Groups are configured in Setup / Users & Accounts / Users / Role Groups

Overview

Roles groups define the specific screen permissions in the AdminPortal user interface that are applicable required for specific roles or activities (sales, finance, admins, etc.). For API type role groups read and write access to various system elements (create accounts, generate reports, etc.) are also defined here at the group level.

One or more role groups are configured on roles to grant the role the permissions it requires (e.g. a role might require both sales and finance role group permissions to perform the role's function).

In the event role groups assigned to a role have opposing settings (one role group grants read rights to a screen/element and another does not grant read rights to the that screen/element) the role group that enables the permission will take precedence.

...

The Role Groups panel on the left of this screen allows you to select existing role groups to view and edit on the Edit Role Group panel to the right. Actions are also available in this panel which are shown as icons above the Filter text box. The available actions are described below.

Actions

Icon

Description

Image Modified

Deletes the role group if not in use

Image Modified

Adds a new role group

Edit Role Group Panel

The information in this panel reflects the currently selected role group. From here you can change role group details (note: fields with a magenta left border are required).

...

  • Name: a descriptive name for the role group or the permissions it provides

  • Type: indicates if the role group grants access to the Application UI (AdminPortal) or provides API permissions. A role group can only be setup with either Application or API role groupsthe ‘Application’ type or the ‘API’ type, a role group cannot be configured with both types of role groups

  • SCIM Default: used in systems integrated for single sign-on access (SSO). This setting determines the role group permissions setup by default when a group is pushed from an identity provider’s portal to LogiSense Billing. By default, the ReadOnly core role group will be configured with this setting but the SCIM Default can be enabled when creating a new role group if desired in order to define different default role group settings for the SCIM role

  • SAML Role Group Identifier: the name of the group setup on the identity provider

...