Assign Access Levels to Management Role Definitions

After creating Management Role Definitions, assigning Access Levels to them is essential to ensure that child Management Roles created from the definition have initial access to resources. Without Access Levels, a Management Role Definition serves as a blank container, and the resulting Management Roles will not grant any initial access.

Although you can add also Access Levels to child Management Roles, adding as many as possible to a Management Role Definition before creating any child Management Roles allows you to build a consistent framework for general resource allocation based on user roles. Once you have added Access Level Assignments to a Management Role Definition, you can tailor child Management Roles with additional Resource Roles to meet the needs of your organization.

Assign Access Levels

  1. On the navbar, expand Role Management and select Management Roles.

  2. Select the Role Definitions tab and search for the role definition to which you want to assign Access Levels. 

  3. Click the Display Name link for the definition.


    This directs you to the View One page for the role definition. View One pages allow you to view and manage the objects to which they pertain.

     

  4. On the View One page, expand the Access Assignments accordion.

  5. Click the Add button.

     

    This opens the Grant Actor Access page. You use this page to select and scope the Access Levels you are assigning.

     

  6. In the Which Type of Access panel of the page, do the following:

    1. Assign Direct to Resource or Other Method – Select the type of assignment

      • Direct – Select this option if you want to assign access to a specific resource, such as a single group

      • By Location – Select this option if you want to assign access to all resources in a specific location (and below if the location has child locations), such as all groups in Boston

      • Relative – Select this option if you want to assign access to all resources relative to members of the BRL, such as all groups in a person’s locations

      • Belonging to which group – Select this option if you want to assign access to all users and people who are members of the selected group(s)

      • Belonging to which Management Role – Select this option if you want to assign access to all people who are members of the selected Management Role(s)

      • Belonging to which Query-Based Collection – Select this option if you want to assign access to all objects belonging to the Query-Based Collection

    2. Resource Type – Select the resource type for which you are assigning access, such as Group (Security)

    3. Access Level – Select the Access Level you are assigning, such as Member

  7. In the Where: Select Resources or a Location panel, search for and select the target resource(s) or the target location (for By Location assignments)

  8. In the Why & for How Long? panel, do the following:

    1. Comment or Justification – Enter a comment about the assignment; optional

    2. Access Starts – Click the field and select a start date and time from the calendar; if a start date is not selected, access begins immediately

    3. Access Ends – Click the field and select an end date and time from the calendar; if an end date is not selected, access continues perpetually

    4. Click Add.

  9. Repeat steps 6 through 8 for each assignment you want to make.

  10. When ready to commit your changes, click Submit.