Access Control

From wiki.eclass.eu
Jump to: navigation, search

Contents

[edit] eCl@ss Extension Control - Overview

Access control functionality allows users having the role Structure Element (SE) Editor assigned to:

· Set restrictions regarding visibility of SEs for certain groups/group members/system · Set restrictions regarding selectability (editability) of SEs for certain groups/group members/system · Define ownership (i.e. Owner Groups) of SEs.

Restrictions may be applied to all types of SEs. Restrictions are inherited downwards though all the Classification Class (CC) levels up to the Application Class (AC). Restrictions are NOT inherited below the AC.

If a certain element used in a segment (SG) (e.g. a property) is shared by other SGs, the restriction will apply in all the SGs for that element. This means that the restriction is set for the element itself, not for the usage.

The following information is displayed to the Structure Element Editor:

· Owner Group (if set) · Groups to which restriction applies · Group Chairman of restricted group with name and e-mail address · All members of the owner group with specification Active

[edit] Manage Owner Group

[edit] Set / Change Owner Group

For each SE only one Owner Group is allowed.


Step 1: Select menu entry [Base Module – Access Control]


1ac.png

Figure 1: Menu entry Access Control


Step 2: Select SE for which Owner Group needs to be set/changed and press Manage Owner Group button


2ac.png

Figure 2: Select SE and press Manage Owner Group button


Step 3: Perform desired actions in Set Owner Group dialog


3ac.png

Figure 3: Set Owner Group Dialog


Step 3.1: Chose new Owner Group from respective drop-down box


4ac.png

Figure 4: Drop-down box New owner group


Step 3.2: Chose from displayed list of users that are active.


5ac.png

Figure 5: Users belonging to selected owner group

NOTE:

1. Only users selected as active within the owner group will be notified when their group is impacted by a change. 2. Active/Passive settings are NOT propagated to the sub-elements.

Step 3.3: Select desired advanced options

· Inherit ownergroup to all children up to the values if not already set (default setting) – by choosing this option it means that only the children SEs having NO owner group set will be assigned the new owner group. The other children already having an owner group set will not be affected.

· Force change ownership up to the values even if set – by choosing this option it means that all children SEs will be assigned the new owner group, regardless if they already have another one set. These other owner groups will be overwritten by the new one.

· If no advanced option is set, the owner group is set only locally to the selected structure element

Step 3.4: After having performed all desired selections press SAVE button


6ac.png

Figure 6: Set new Owner Group

System displays message “Applying of owner group started.”.


[edit] View Owner Group

Select SE whose Owner Group needs to be viewed. Select TAB “Administrative Data”:

7ac.png

Figure 7: Information on Owner Group of SE displayed

[edit] View Impacted Group

In order to view Impacted Group of a SE, select respective SE and click tab [Impacted Groups]:

8ac.png

Figure 8: View Impacted Group

[edit] Notify Impacted Group

Step 1: Select desired structure element Step 2: Select TAB Impacted Groups Step 3: Press button [Announce all] Step 4: Fill in desired message to be received by Impacted Group(s) and press OK button

9ac.png

Figure 9: Announce all

[edit] Manage Restrictions

Step 1: Select menu entry [Base Module – Access Control]

1ac.png

Figure 10: Menu entry Access Control

Step 2: Select SE for which restrictions need to be set and press Manage Restrictions button

11ac.png

Figure 11: Select SE and press Manage Restrictions button

Step 3: Select desired restriction type / directive and the user(s) / group(s) for which selected restriction will be applied (detailed description of restriction and user types can be found in the following chapters)


12ac.png

Figure 12: Manage Restrictions dialog

Step 4: Press OK button. System will synthesize performed selections in table „Restrictions“

13ac.png

Figure 13: Overview set restrictions

Step 5: Press SAVE button. System displays message that applying of restriction started.


14ac.png

Figure 14: Save set restrictions

[edit] Restriction Types

[edit] Restriction per Structure Element Visibility

In order to allow visibility of SE and its children, select restriction type [Visibility] and directive [Allow] for the desired User type (for User type selection please see chapter below). By making this selection the respective SE will be visible for the selected Users.

15ac.png

Figure 15: Allow Visibility

In order NOT to allow visibility of SE and its children, select restriction type [Visibility] and directive [Deny] for the desired User type (for User type selection please see chapter below). By making this selection the respective SE will NOT be visible for the selected Users.


16ac.png

Figure 16: Deny Visibility

[edit] Restriction per Change Request

In order to allow creation of CRs on selected SE and its children, select restriction type [CR] and directive [Allow] for the desired User type (for User type selection please see chapter below). By making this selection CR creation will be allowed on the respective SE for the selected Users.


17ac.png

Figure 17: Allow CR

In order to NOT allow creation of CRs on selected SE and its children, select restriction type [CR] and directive [Deny] for the desired User type (for User type selection please see chapter below). By making this selection CR creation will NOT be allowed on the respective SE for the selected Users.

18ac.png

Figure 18: Deny CR

[edit] Restriction per Export

In order to allow export of SE and its children, select restriction type [Export] and directive [Allow] for the desired User type (for User type selection please see chapter below). By making this selection it will be possible to export the respective SE by the selected Users.

19ac.png

Figure 19: Allow Export

In order to NOT allow export of SE and its children, select restriction type [Export] and directive [Deny] for the desired User type (for User type selection please see chapter below). By making this selection it will NOT be possible to export the respective SE by the selected Users.

20ac.png

Figure 20: Deny Export

[edit] User Types for which Restrictions are set

Restrictions types described above may be set for the following types of Users.

[edit] Restriction per System

In order to set a restriction per system select [System] under User type. This means that respective restriction will be set for all users in the system, regardless of the group(s) they belong to.


23ac.png

Figure 21: Restriction per System

[edit] Restriction per Group

Step 1: In order to set a restriction per group, please select [Group] under User type. Step 2: Check the desired groups for which restriction needs to be set and press the [>] button.


24ac.png

Figure 22: Select Group

This means that respective restriction will be set ONLY for the selected groups.

25ac.png

Figure 23: Groups for which restriction is set

[edit] Restriction per User

Step 1: In order to set a restriction per group select [User] under User type. Step 2: Select desired group from displayed combo-box. Step 3: Check the desired groups for which restriction needs to be set and press the [>] button.

26ac.png

Figure 24: Select User

This means that respective restriction will be set ONLY for the selected user(s).

27ac.png

Figure 25: User(s) for which restriction is set

Personal tools