Application privileges are granted by assigning a Role to a user.
A Role is made up of individual application permissions that are bundled together.
The goal of a Role is to make it easy to give someone all of the permissions that they need in order to fulfill their business role.
IDI provides default Roles for common business functions within each application. Administrators can assign their users to these Roles or they can create their own customized roles that contain any combination of application permissions that they choose.
The permissions in default Roles cannot be altered; however, Administrators can easily view the permissions in a default role as a basis to create their own company’s variation on them.
Roles need to be assigned to a user for each IDI environment that they need access to. Most users only access a company’s production environment on a day-to-day basis and thus only need roles assigned in this one environment.
However, in instances where access to a non-production environment is required, the user will need roles assigned to them in these environments.
Administrators can assign different Roles to users in each environment which allows for tailoring their permission level based upon the environment they are working in.
For example, a user can be granted admin level privileges for an application in the test environment, read-only in the production environment and have no logon privileges at all for the stage environment.
Working with User Roles
From the Roles page you can:
Search for a specific role. From the Search Results you can:
Edit a role
Delete a role
Add permissions to a role