Share via


Users and Groups, Models Tab (Master Data Manager)

Use the Models tab to view or edit model permissions.

  • For users, permissions can be explicitly assigned or inherited from group memberships.

  • For groups, permissions are explicitly assigned.

This page contains two panes: Model Permissions and Model Permission Summary.

Buttons

Button Name

Description

Back

Returns to the list of users or groups.

Edit

Enables changes to the user's or group's permissions.

Save

Saves changes.

This button is available after you click the Edit button.

Save and continue

Saves changes and opens the Hierarchy Members tab.

This button is available after you click the Edit button.

Cancel

Cancels changes.

This button is available after you click the Edit button.

Controls

Control Name

Description

Model

Select a model to filter the Model Permissions and Model Permission Summary panes.

NoteNote
Only models for which you are a model administrator are displayed.

Permissions (Users only)

Select a view of the user's permissions. Possible views are:

  • User only: Displays permissions assigned explicitly to the user.

  • User and inherited from group: Displays permissions assigned explicitly to the user and those inherited from group memberships. If multiple groups overlap with each other or with the user's explicit permissions, duplicates are displayed in the list.

  • Effective: Displays the user's effective permissions, accounting for any combination of explicit and inherited permissions, as well as permissions inherited from ancestor objects within the model permissions hierarchy.

    NoteNote
    You cannot edit permissions while viewing effective permissions.

Model Permissions

Use the Model Permissions pane to assign or deny permission to objects in a model. Only the models for which you are a model administrator are displayed.

The model structure is represented hierarchically and permissions cascade down the hierarchy unless overwritten at a lower level.

Note

An asterisk (*) next to a model name indicates that the user has permission inherited from a group.

Click Edit to assign permissions. Then click a node to view the menu.

Menu Item Name

Description

Read-only

Assigns the user or group read-only permission. Read-only items are displayed in grey italic text.

Read-only permission to a derived hierarchy assigns read-only permission to all of the hierarchy's attributes and explicit hierarchies.

NoteNote
When read-only permission is assigned to any entity in a derived hierarchy, read-only permission is automatically assigned to Name and Code.

Update

Assigns the user or group permission to add, delete, and update data within the model, derived hierarchy, or entity. Updateable items are displayed in black text.

Deny

Denies permission to the user or group. If the user or group is denied permission to any node in a derived hierarchy, the entire hierarchy is not visible. If the user or group is denied permission to a model, the user cannot access any attributes within the model, no matter which permissions might be assigned within it.

NoteNote
You cannot explicitly deny permission to Name and Code.

Details

Displays the date and time the user or group permissions were updated, and by whom.

Undo

Removes the permissions you assigned.

Model Permission Summary

Use the Model Permission Summary pane to view or edit a summary of a user or group's permissions to a model. The data displayed in this pane is based on the Model and Permissions already selected.

Buttons

Button Name

Description

Delete selected permission

Deletes the permission. If this was the only permission the user or group had to a specific model, hierarchy, or entity, the user no longer has permission.

Locate selected permission

Locates the model, hierarchy, or entity in the Model Permissions Pane. The model, hierarchy, or entity is displayed in bold black text.

A menu is displayed when you click the down arrow in each row of the grid.

Menu Item Name

Description

Delete

Deletes the explicitly-assigned permission. The user can still have inherited permissions.

Details

Displays the date and time the user or group permissions were updated, and by whom. If the permission is inherited from a group, the group name is displayed.

Grid Columns

Column Name

Description

Type

Displays the type of object to which the user or group has been assigned permission. Possible values are:

  • Model

  • Entity

  • Member type

  • Hierarchy

  • Attribute

  • Attribute group

Name

Displays the name of the object to which the user or group has been assigned permission. This includes the parent names, for example: Product:Product:Leaf:Color.

Source Group (Users only)

Displays the group the permissions are inherited from, if the permission is inherited.

Permission

Displays the type of permission. Possible values are:

  • Read-only

  • Update

  • Deny