Access profiles - view on the application

The User administration (see Maintaining internal users) displays the task-related profiles, and you can assign views on or access to modules to individual users relatively quickly. The profiles define, for example, which users can only see specific tabs in the forms, who can edit data records in these tabs, or which users can access the corresponding administrator functions.

You can also manage the profile groups (for example, PSA_PRO_... ) in the PiSA cubes group assignment.

Access profiles

A profile groups users with the same or a similar area of responsibility. Depending on these tasks, access to the intended objects of the user interface can be organized "horizontally", for example, in such a way that marketing staff members can only see contacts, back office and marketing in the CRM, and sales staff members can only see contacts, back office and sales.

The following standard profiles are already present in the CRM:

Standard user profile (GIC=42)

For access to all objects of the application, includes the administrator (GIC=43) and developer (GIC=41) subprofiles.

Customizing profile (GIC=2000)

Developer profile with access to all customized objects, does not include any subprofiles.

  • Contact management
  • Marketing
  • Mobile users
  • Product configuration
  • Product management
  • Service
  • Sales

Subprofiles

Each of the task-related standard profiles can contain the View, Master and Admin subprofiles. This "ver­tical" classification allows you to separate profile members according to their position in the company or area of responsibility (staff member,..., sales director). This results in the following representations in the user interface, e.g., for the sales profile:

Sales (View) = PSA_PRO_SAL

Display of the link to sales-relevant data, e.g., "sales" tab in a contact form.

Sales (master) = PSA_PRO_SAL_MST

Display of the groups for sales-relevant master data in the top menu, e.g., the "sales" top menu item.

Sales (admin) = PSA_PRO_SAL_ADM

Display of the groups for sales-relevant administration data in the administrator menu, e.g., the "sales planning" admin­istrator menu item.

Authorization hierarchy

The subprofiles form an authorization hierarchy. The admin profile inherits the authorization of the master profile, the master profile the authorizations of the view profile. The view profile sees the least, the admin profile the most. Within a pro­file, the view cannot cancel authorizations of the upper hierarchies.

Note: Note that the browser displays the authorization hierarchy inversely in the Structure tab of the group management. The admin profile with the most authorizations can be found in the lowest level, not in the top one.