Question
I have questions about the policy "**AdminAccess" that the Admin group has as in the List of Policies and Permissions section of the manual.
- What is the scope of permission for "**AdminAccess"?
- What is the difference between granting "**AdminAccess" and granting "List **", "View **", and "Edit **"?
List of policies and permissions
https://www.hulft.com/help/en-us/HULFTSquare/Content/HULFT_Square/HS_Settings/settings_permissions.htm
Answer
- What is the scope of permission for "**AdminAccess"?
"**AdminAccess" are policies that grant administrative privileges to all workspaces for which a user have access privileges.
For permissions that do not specify a workspace, such as Log and Workspace, the contents displayed will change depending on whether or not AdminAccess is granted, and the contents of the range for which a user have access privileges will be displayed.
For resources that specify workspace, the policies and privileges granted to the workspace control what can be operated, so basically the scope of privileges does not change depending on whether AdminAccess is granted or not.
However, some resources, such as Connections, require AdminAccess to operate.
- What is the difference between granting "**AdminAccess" and granting "List **", "View **", and "Edit **"?
There is no difference between when "○○AdminAccess" is granted and when "List**", "View**", and "Edit**" is granted.
Supplementary information
As mentioned above, for resources that specify a workspace, it is necessary to grant access privileges to the workspace separately.
Note that the Admin group is granted the "WorkspaceAdminAccess" policy by default, so it allows users to access all workspaces.
For more information, please refer to [Configuration Points] in the manual below.
Workspace - Points for settings
https://www.hulft.com/help/en-us/HULFTSquare/Content/HULFT_Square/HS_Settings/settings_workspace.htm
Comments
0 comments
Article is closed for comments.