| Zeile 784: |
Zeile 784: |
| | ==Authorization== | | ==Authorization== |
| | | | |
| − | <br />
| |
| | | | |
| − | The access to certain resources provied by the application, e.g. facilities, actions, elements of the user interface, can be limited or unlimited. The access is unlimited if the user is a superuser. Any superuser can set or unset the property '''Superuser''' for any other user. The access for not-superuser users can be limited through his groups ('''group-level authorization''') and/or locations ('''location-level authorization'''). | + | The access to certain resources provied by the application, e.g. facilities, actions, elements of the user interface, can be limited or unlimited. The access is unlimited if the user is a superuser. Any superuser can set or unset the property '''Superuser''' for any other user. The access for non-superuser users can be limited through his groups ('''group-level authorization''') and/or locations ('''location-level authorization'''). |
| | | | |
| | ===Group-Level Authorization=== | | ===Group-Level Authorization=== |
| | | | |
| − | <br />
| + | The group-lelel authorization is implemented through group permissions, which a set of rules specifing access to different resources: |
| | | | |
| − | The user belongs one or more groups. For each group the following categories of resources can be allowed or denied
| + | [[Datei:FMCU-Server-Groups-Permissions.png] |
| | + | |
| | + | Each user belongs one or more groups. For each group the following categories of resources can be allowed or denied |
| | | | |
| | {| class="wikitable" | | {| class="wikitable" |