Hi, I'm Ask INFA!
What would you like to know?
ASK INFAPreview
Please to access Ask INFA.

Table of Contents

Search

  1. Preface
  2. User administration
  3. User authentication
  4. SAML single sign-on
  5. Users
  6. User groups
  7. User roles
  8. Notifications
  9. User configuration examples
  10. Editing your user profile
  11. Editing your user settings
  12. Inviting users to join your organization

User Administration

User Administration

Assigning and unassigning services

Assigning and unassigning services

When you create a user, the user can access services based on the organization's licenses, the user's roles, and the groups to which the user belongs.
Users normally inherit the services assigned to their user groups. However, you can specifically allow or deny access to services on the
Users
page.
For example, you want to allow an application developer with the Service Consumer role to use API Portal but not
Data Integration
or
Application Integration
. Explicitly allow the API Portal service for the user and deny the
Data Integration
and
Application Integration
services. When you do this, the application developer can no longer see the
Data Integration
and
Application Integration
services on the
Services
page even though the Service Consumer role has privileges related to them.
When a user has access to a service, the service is visible on the
Services
page. The user can access and use the service as long as access is allowed.
When a user loses access to a service, the user can no longer see the service on the
Services
page.
Allowing or denying a service only reveals or hides the service from the user interface. The user retains all privileges associated with their assigned roles, even if you explicitly deny a service. This means that the user might be able to perform an action through the API even if access is denied. As a best practice, only assign privileges that align with services assigned to a user.
From the services assigned to a user, you can select the default service to open when the user logs in.
You can set the default service at the user level or the user group level. The user can also select the default service on the
Services
page. If the default service is set at multiple levels, the setting that the user makes on the
Services
page takes precedence, followed by the user level, and then the user group level.
  1. In
    Administrator
    , select
    Users
    .
  2. From the list of users, click the user's name.
  3. In the
    Group, Role, and Service Assignment
    section, on the
    Services
    tab, perform one of the following tasks for each service:
    • To let the user's group memberships define whether the user can access the service, leave both the
      Allow
      and
      Deny
      options deselected. If the group's services change, the user's access to services changes automatically.
    • To allow access to the service regardless of what's defined in the user's group, select the
      Allow
      option.
      If you don't see the service you wish to assign, that means the service isn't present in the organization's license.
    • To deny access to the service, regardless of whether the user's group allows it, select the
      Deny
      option.
  4. Optionally, select the default service to open when the user logs in.
  5. Click
    Save
    .

0 COMMENTS

We’d like to hear from you!