Granular role-based access control

Last Updated : Mar 31, 2015 |

With the Granular role-based access control feature, you can restrict access to Communication Manager resources, such as gateways and servers, and objects on resources, such as Agent Login ID.

Based on the role that a user has, System Manager supports range permissions along with the operation permissions assigned to the user. You can assign permissions or a combination of permissions to users. The permissions include adding, editing, deleting, and duplicating objects. For example, if you assign a range of 1000:4000 and define permissions for Add, Edit, and Delete operations, the user can create, edit, and delete extensions within the range of 1000:4000.

The default value in the specific Range field is asterisk (*). If you retain this value, the user has access to the entire defined range.

You can define range-level granular permissions for the following Communication Manager objects:

  • Endpoints

  • Agent Login ID

  • Announcement

  • Audio Group

  • Best Service Routing Pickup Group

  • Holiday Table

  • Variables

  • Vector

  • Vector Directory Number (VDN)

  • Vector Routing Table

  • Service Hours Table

  • Coverage Answer Group

  • Coverage Path

  • Coverage Remote

  • Coverage Time-of-Day

  • Group-Page

  • Hunt-Group

  • Intercom Group

  • Pickup Group

  • Terminating Extension Group

  • Route-Pattern

  • Class of Restriction (COR)