Groups & Privileges

Groups & Privileges allows users to restrict access for selected Groups in Runtime. Groups can be imported from Access and Identity Management, imported from Active Directory, or created directly here. Users can only be assigned to a Group through the Access and Identity Management web client. After a Group is created or imported, you can add a description and configure permissions by allowing or denying specific privileges.

Note: While the Administrators group has Allow for all Privileges, newly added groups will have Deny for all Privileges.
Permission Description
Display Layout Access to the items within a Display Layout. These are to control and view the items. This can be used to top users from interacting with Display Layout items you do not want them to have control over. They may be allowed to still view the information displayed by that item if desired.
Integrated Systems Access to the assets within each integrated system. This can be used to deny specific users the ability to select or view assets. This allows you to only allow access to assets which are relevant to that user.
Maps Whether a User can View each Map. While Maps can be excluded from the Navigation Item, there are other ways a user can be navigated to a Map (such as selecting an asset from the Alarm Grid, or Workflows). This prevents navigation from those other methods.
Security Whether a User can access Security Manager, as well as Logout, Switch User, Request Password Reset, and Request PIN Reset. This will prevent unauthorized users from changing project security settings.