Operations with roles

With role management, you can perform the following actions:

  • add or delete roles in the system

  • filter for roles

  • modify an existing role (set permissions and combine roles)

  • create a report showing effective permissions for a role

  • list users who are assigned to a role

  • try out a role

Use the standard buttons and menu entries in the upper area to do this:

Figure 128: Users, roles, groups – roles: operations

To modify a role

To create a report showing effective permissions for a role

Reports can be created only for the roles that do not contain system roles. If a role contains at least one system role, the report only lists the usage of roles.

  • Click Create Role Report. The dialog with role report options opens:

  • Select the boxes to mark the permissions to be included in the report. The following options are supported:

    • Role Usage

    • General Administration

    • Web Service Administration

    • Document Access

    • Document Type Administration

    • File Access

    By default all permissions are included.

  • Select the role to be included to the report from the Available Roles list.

  • To add a role to the Selected Role list, click .

  • Alternatively, click to add all available roles. Once the role is added to the selected roles list, it is no more displayed in the list of available.

  • To remove a role from the selected role list, click .

  • Alternatively, click to deselect all roles.

  • Click Create Report. It will be created in the PDF format and opened in a new browser tab.

Reports are prepared asynchronously in the background. You can switch to another view while the process runs.

To try out a role

You can try out a role to test if it allows access to all functionality that you expect for this role.

Before you try out a role as an administrator, note that your permissions as an administrator must contain all permissions of the role that you want to test. You cannot simulate a more powerful role than the one you currently possess.
  • Choose the role whose permissions you want to test.

  • Navigate to the upper functional panel and expand the More menu. From the expanded menu, select Try Out Role.

    In this mode, all your current permissions are intersected with the permissions of the role that you try out. Also see “Intersection” in chapter Role usage (combining roles).

  • The view will switch to the homepage. The homepage will display the application with the permissions associated with the selected role.

  • Interact with the application to simulate the experience of a user with the selected role. If necessary, adjust the permissions of the role based on your testing.

  • A notification message will appear in the upper panel, indicating that you are trying out another role. To return to the role administration panel, simply click the link provided in the notification panel.