Granting rights

Roles or rights

Our advice is not to grant rights directly to people, but to use roles as intermediary. System administrators or developers should prepare these rolesThese roles must have all the required rights and a clear name and description. Regular users and supervisors can then distribute the roles through their users.

Granting rights to users or (preferably) roles can be done through two perspectives - from the "Users and roles" perspective you first find the user or role and then find the correct right. From the "Objects and rights" perspective your first choose the object (application, folder, database etc) you want to grant rights on, then you find the user or role.

Grant a right from the "Users and roles" view

Do you have the right?

When you do not have a "Grant rights" option available you do not have the right to directly grant rights to users - you can only grant roles to users.

  1. Select the user or, preferably, the role you want to grant a right.
  2. Choose "Grants", "Grant right".
  3. Navigate to the object you want to give rights to. 
    For a Publisher folder for example, navigate to "File system" - "Folders and files" and select the right folder.
  4. Select the object and choose the right you want to grant.
    For a Publisher folder for example, you can choose between "Full access" and "Browse".
  5. Add an explanation for granting this right.
  6. Choose wether you want to allow the user or role to grant this right to other users or roles and click "OK".
Grantable rights

If you work with roles it is recommended not to use the option "This user or role may grant this right to others" unless you specifically need this: when creating roles meant to be used by regular users this is usually not the case.


Grant a right from "Module and objects and rights" 

Do you have the right?

When you do not have an "Objects and rights" tab at the top of the application you do not have the right to directly grant rights to users - you can only grant roles to users.

  1. Make sure the "Module objects and rights" tab is selected
  2. Navigate to the desired module or object.
  3. A list of users and roles with permissions for this object is displayed.
    When the user or role is displayed in grey they have an indirect permission, most likely because they have this permissions on this object on a higher level.
  4. When the user or role is not already present, choose "Grants", "Grant right" from the button bar.
  5. Navigate to the right role or user and choose the desired right on this object.
  6. Decide wether or not you want to allow the user or role to directly grant this right to others (usually this is not recommended).
  7. Add an explanation for this grant is the explanation field.
  8. Click "OK" to a finish.

The right is granted immediately and the user or role appears in the list.

PreviousNext