Creating User Groups and Working with Them

User groups are system security subjects used for combining several users under a single account to gain unified control of access permissions of these users. Group members can become users and groups created in Foresight Analytics Platform, domain groups and users.

Specific access permissions can be assigned both to a group and to individual users. In this case the assigned permissions are implemented to all group members (domain and built-in users/groups) and are used as an extension of their personal permissions. Permissions of any system user include their own permissions and permissions of all groups, in which this user is included.

The system has two built-in groups: ADMINISTRATORS and USERS. The ADMIN schema owner is included in the ADMINISTRATORS group by default. Built-in groups have different privileges.

NOTE. When roles of the information security administrator and the application administrator are separated, the Mandatory Access Control section is available only for the information security administrator.

To create and work with user groups, use the Groups section on the navigation panel:

To search for a user group, click the Search button on the toolbar. The standard search dialog box opens.

Key features:

To apply the specified settings, click the Save button on the toolbar or side panel.

NOTE. If section parameters have been changed, an attempt to go to another section of the security manager or to close it displays a request to apply changed settings.

See also:

Setting Up System Security Policy | Creating User Accounts and Working with Them | Distributing Privileges