Edit a security group to change its name, its administration level, its members, or the permissions it grants. Click here to read more about security groups.
- Click Manage.
- Under User Admin, click Security groups.
- Click the relevant security group description, or click the three dots menu icon next to it and select Edit.
- Update the following fields as needed:
Group name: Use a descriptive name so members' access is clear at a glance, for example Mark's Refrigerators - basic tracking.
Organization Group: Sets where in the organization structure this security group is managed, in other words who can manage the group. Placing a security group at a given level doesn't grant its members any access. It determines who can edit the security group itself.
- A security group can belong to an organisation or a level above it.
- A security group can only belong to one group for administration.
- The organisation group only dictates which level can edit the security group. It doesn't affect what the group's members can do.
- Users in the tree below this group can't see the group.
- A security group can only be administered by users at a level higher than the group.
Group Membership: Click Select users to choose the users who belong to the group. The users available here are based on the users in the selected organization group structure.
- Click the Permissions tab to edit what the group can access.
- Click Add Permissions to add new roles, or click an existing group name to edit its permissions.
- Select the group, for example drivers, assets, or sites, that this security group will have access to.
Note: Access follows the organisation tree. If you select only H&O as shown in the example above for assets and drivers, users in Product Management won't have access to the assets and drivers in the International organization. If you select International, all users below it, including both H&O and Product Management, will have access to the assets and drivers in that organization.
You can also click the existing group name to edit the permissions.
- If you have opened a security group, click on the Permissions tab on the left.
- Click on the Organization group name.
- Select a profile, for example System Administrator or Web User, to filter the roles available in the dropdown list.
- Under Roles, select the applicable role. You can assign multiple roles to one security group, and remove a role by clicking the X next to it.
Note: Combined roles form a union and make permissions less restrictive. For example, if one role allows creating assets and another doesn't, the user will be able to create assets. Permissions are always additive.
- Click Save.