- As sets of accounts for reporting at the organisation level.
- As a way of assigning attributes such as 'role' to sets of users - e.g. member, staff, walk-in user. You must, in fact, allocate at least one permission set to everyone because of this and your initial setup will have included a default permission set for this purpose.
- With restrictive mode to limit with resources are available to sets of users. When used this way any changes you make to the resources allocated to a permission set instantly changes what the related accounts can access.
Permission sets can only apply to user accounts under the same administrator organisation - any sub-administratorsorganisations you have will need at least one permission set of their own.
The first thing you will see is a list of any existing permission sets.
Each line will display the name a description of the set and some other information such as the number of accounts it is assigned to and the number of resources assigned to it - clicking on either will take you to a list of those accounts or resources. Clicking on the permission set name description will allow you to edit the sets details (see below).
The name is automatically generated based on the description, but you can change it if you wish. The name appears is used in data downloads and the audit report. It is also used in bulk uploads and bulk uploads, but you are unlikely to see it anywhere else. Permission set names, like account username, cannot be modified once created.
Once you click the create button you are taken to the modify page for your new permission set. This is the same page you would see if you clicked on the name description of an existing permission set.
Modifying a permission set
If you click the name description of a permission set, you can modify it.
The sidebar shows you the description, name, creation time and modification time of the permission set
From the allocated to accounts button on either the permission set in the list or on the modify page you will be taken to a preset search for accounts that have that permission set. From here you have access to all the same actions as any other search including allocate and revoke permission sets. Allocating this permission set to accounts though is done from any other search or list view that identifies the accounts that should have this set.
From the allocated to accounts button on either the permission set in the list or on the modify page you will be taken to a filtered view of the allocated tab in the resource catalogue. This view will let you easily remove resources from the permission set. You can also add others from the 'All' tab, but you will find it easier to use the Add button (see below).
This view usefully also allows you to allocate resources to other permission sets which can help with the management of resources - you might even create some permission sets that you never allocated to accounts for this reason.
This will bring up a list of all the resources that are not already allocated to this permission set - add them to the set by clicking on the add buttons on the relevant resources.
You can also allocate resources to a permission set directly from the catalogue.
Permission set descriptions do not have to be unique, but it helps.