ssossossosso
Documentation Home »Administrator Guide »Security »Access / Role Management
current version

Access / Role Management

Overview

Different OroCRM users require different information and tools. A user’s ability to access data and perform actions in the system depends on the following:

  • Roles assigned to the user:

    E.g., sales representatives and system administrators need very different data and require different access to it.

    • Actions a user can perform with particular data depend on access levels set for these actions in the user’s role.
    • Roles also control access to certain parts of the system.

    Therefore, for some users interface may not always look like on the images in this guide.

    Users can check which roles are assigned to them on the My User page (see Access You User Page section).

  • Organizations and units which the user has access to or is owned by:

    E.g., users who work in different offices usually must have access to data exclusively within their office.

    This information users also can see on the My User page.



  • An owner of particular data:

    When a user must have access only to the data of their office, we need to specify which data belongs to which office.

    • Who can be a data owner depends on the ownership type setting for a data. This setting defines whether the data can belong to a particular user or, for example, like a company address book, can belong only to the whole company but not its subunits or users.

    Users who create or edit a record can specify a record owner. The range from which they can pick up a record owner depends on the user role(s) and the ownership type of an entity the record of which they create / edit.