====== Roles and Permissions ====== Permissions define the rights one has on a Dataset: "Hidden", "Viewable" or "Editable". \\ Roles define the level of use one has on using an Extension: "User", "Operator" or "Administrator". Permissions and Roles have a default status which one can be overruled by multiple Private Levels. A higher ranked level will overrule a lower level if applicable. \\ Chain of permission and roles, from lowest to highest level: "Global", "Workspace", "User Group", "User". \\ The default Permission is set on "Global" level, the default Role is set on "Workspace" level. ===== Levels of definition ===== |< 100% 10% 45% 45% >| ^ Level ^ Permissions ^ Roles ^ | Global | The status for the Global level is the default permission for datasets. | The Global level is not available for roles. | | Workspace | Private dataset permissions for an Orbit Workspace, are optional but will overrule the Global status. | The status for the Workspace level is the default Role for Extensions. If an Extension is added to an Orbit Workspace, it will have at least a status for the Workspace level. | | User Group | Private permissions and roles for a User Group are optional but if set they will overrule the Global and Workspace status. || | User | Private permissions and roles for a User are optional but if set they will overrule the Global, Workspace and User Group status. || ===== Dataset Permissions ====== Default dataset permissions can be set through: * [[111:eos:console:resources:datasets_permissions|Resources > Datasets > Dataset Use]] Private dataset permissions can be set through: * [[111:eos:console:resources:datasets_permissions|Resources > Datasets > Dataset Use]] * [[111:eos:console:users_usergroups:user|Users and Permissions > Users]] or [[111:eos:console:users_usergroups:usergroup|User Groups]] **Permissions** * Hidden: No access to the defined dataset, not for viewing not for editing. * Viewable: View access only to the defined dataset. * Editable: View and Edit access to the defined dataset. Spatial and Attribute component can be edited. * Inherited: The dataset permission is inherited from / is the same of the first set lower ranked level (User > User Group > Workspace > Global). ===== Roles on Extensions ===== Default roles on extensions can be set through: * Workspace : [[111:eos:console:users_workspaces:workspace|Users and Permissions > Workspace > Extensions]] Private roles can be set through: * User Group : [[111:eos:console:users_usergroups:usergroup|Users and Permissions > User Groups]] * User : [[111:eos:console:users_usergroups:user|Users and Permissions > Users]] **Roles** * User: With this role it is only possible to view data. * Operator: With this role data can be viewed, modified and deleted. * Administrator: With this role data can be viewed, modified, deleted, imported and exported.