To add security information to the Costpoint Analytics data models, you specify the user groups and users and related settings in a Microsoft Excel spreadsheet (CostpointAnalyticsOrgSecuritySetup.xlsx) and then load those settings from that file into the data models. The CostpointAnalyticsOrgSecuritySetup.xlsx file is located in the <installation location>\Analytics\Setup folder. If your firm also has Capture Analytics, some settings in this file apply to both Costpoint Analytics and Capture Analytics, and some apply only to one or the other. |
In this topic |
CostpointAnalyticsOrgSecuritySetup.xlsx contains the following worksheets:
USERGROUPS — Use this worksheet to identify the user groups, indicate whether or not each group has access to all organizations, and specify the Costpoint Analytics tabs to which each group has access.
USERS — Use this worksheet to identify individual users, link each user to a user group, specify network user IDs for single sign on authentication, specify whether or not each user can modify Costpoint Analytics, and specify whether or not each user can view labor cost information.
SPECIFICORGACCESS — Use this worksheet to specify the organizations to which members of each user group have access.
By default, this file contains an ADMIN user group with complete access to Costpoint Analytics. An ADMIN user ID is assigned to that user group, along with the two accounts created during the installation: DeltekAnalytics and DeltekAnalyticsCW. (If your firm also has Capture Analytics, this user group and these users also have complete access to Capture Analytics by default.)
Normally, you should only assign a user to one user group. If you assign a user to two groups, for example, that user has the access granted to the first group plus any additional access granted to the second group.
Column |
Description |
USERGROUP |
If you import security data from Costpoint, this column contains the imported user groups. Only user groups set up to provide access to Project Inquiry and Reporting (PI), General Ledger (GL), and Labor (LD) are imported. You can also add a new user group that does not exist in Costpoint, and you can delete a user group imported from Costpoint if you do not want to provide any access to Costpoint Analytics for that user group. By default, the worksheet contains an ADMIN user group with complete access to Costpoint Analytics. If your firm also has Capture Analytics, this user group and user also have complete access to Capture Analytics by default. |
ALLORGSACCESS |
If you want members of this user group to have access to data for all organizations, enter Y. If you want to limit the organization data to which they have access, enter N. You specify the organizations that are accessible on the SPECIFICORGACCESS worksheet. (See SPECIFICORGACCESS Worksheet Data.) If you import security data from Costpoint, the import process sets the value in this column based on the corresponding setting in Costpoint. If your firm also has Capture Analytics, this setting applies to all organizations from both GovWin Capture Management and in Costpoint. |
ALLTABSACCESS |
If you want members of this user group to have access to all tabs in Costpoint Analytics, including the User Options tabs, enter Y. If you want to limit the tabs to which they have access, enter N and use the other columns in this worksheet to specify the tabs to which the user group has access. Tabs to which a user group has no access are not visible to users in that group. If your firm has Capture Analytics, this setting applies to all tabs in both Capture Analytics and Costpoint Analytics. |
SUMMARY |
Enter Y to give the user group access to the Summary Dashboard tab in Costpoint Analytics – Summary. Enter N to deny access. |
REVENUE |
Enter Y to give the user group access to the Revenue tab in Costpoint Analytics – Project. Enter N to deny access. |
PROFIT |
Enter Y to give the user group access to the Profit tab in Costpoint Analytics – Project. Enter N to deny access. |
BACKLOG |
Enter Y to give the user group access to the Backlog tab in Costpoint Analytics – Project. Enter N to deny access. |
AR_DSO |
Enter Y to give the user group access to the AR and DSO tab in Costpoint Analytics – Project. Enter N to deny access. |
PAR |
Enter Y to give the user group access to the Projects at Risk tab in Costpoint Analytics – Project. Enter N to deny access. |
PROJECTS_AHDD |
Enter Y to give the user group access to the Ad Hoc Data Discovery tab in Costpoint Analytics – Project. Enter N to deny access. |
LU |
Enter Y to give the user group access to the Labor Utilization tab in Costpoint Analytics – Employee. Enter N to deny access. |
PIPELINE_CURRENT |
If your firm has Capture Analytics, enter Y to give the user group access to the Current Pipeline tab in Capture Analytics. Enter N to deny access. |
PIPELINE_FORECAST |
If your firm has Capture Analytics, enter Y to give the user group access to the Pipeline Revenue Forecast tab in Capture Analytics. Enter N to deny access. |
PIPELINE_HISTORICAL |
If your firm has Capture Analytics, enter Y to give the user group access to the Historical Pipeline tab in Capture Analytics. Enter N to deny access. |
PIPELINE_BIDWINRATES |
If your firm has Capture Analytics, enter Y to give the user group access to the Bid and Win Rates tab in Capture Analytics. Enter N to deny access. |
PIPELINE_AHDD |
If your firm has Capture Analytics, enter Y to give the user group access to the Ad Hoc Data Discovery tab in Capture Analytics. Enter N to deny access. |
USEROPTIONS |
Enter Y to give the user group access to all User Options tabs. Enter N to deny access to all User Options tabs. |
Column |
Description |
USERID |
If you import security data from Costpoint, this column contains the user IDs associated with the imported user groups. You can also add a new user ID that does not exist in Costpoint, and you can delete a user ID imported from Costpoint if you do not want to provide any access to Costpoint Analytics for that user. By default, the worksheet contains ADMIN, DeltekAnalytics, and DeltekAnalyticsCW user IDs in the ADMIN user group with complete access to Costpoint Analytics, including the ability to add new tabs or analytical objects. If your firm also has Capture Analytics, these users also have complete access to Capture Analytics by default. |
NON SSO PASSWORD |
You can specify passwords for user IDs. These passwords apply only if you have not implemented single sign on user authentication. (If you have a Costpoint Analytics SaaS Subscription and you decide to use security in Costpoint Analytics, this column does not apply. You must implement single sign on authentication if you use security.) You may want to delay implementation of single sign on authentication while you are testing security settings. That enables you to log into Costpoint Analytics more quickly using various user IDs to confirm that they have the correct access. If you instead implement single sign on, you will have to log out of the network and log back on each time you want to test another user ID. Because these passwords are not encrypted, Deltek strongly recommends that you implement single sign on user authentication when you are ready to make Costpoint Analytics generally available to users. Deltek does not recommend or support making the analytics available using these passwords for authentication. |
USERGROUP |
If you import security data from Costpoint, this column contains the imported user group for the user ID. If necessary, you can assign a user to another user group. If you add a user ID in the worksheet, you must assign that user to a valid user group in this column. |
NTNAME |
To make use of the single sign on capability, enter the user’s network user ID. If the user is already logged on to your network using this user ID, Costpoint Analytics gives that user access without requiring another log-on procedure. Costpoint Analytics SaaS: If you have a Costpoint Analytics SaaS Subscription, the user IDs should be those set up by Deltek Cloud Operations for accessing the analytics. |
QVACCESS |
If you waont the user to be able to add new tabs or analytic objects in Costpoint Analytics, enter ADMIN. If you do not want the user to be able to add new tabs or analytic objects, select USER. If your firm also has Capture Analytics, this setting applies to both Capture Analytics and Costpoint Analytics. Costpoint Analytics SaaS: If you have a Costpoint Analytics SaaS Subscription, this setting does not apply. All users can extend the analytics using shared objects, but no one, including a user with ADMIN in QVACCESS, can modify the underlying .QVW files or the data models. |
LABORCOSTACCESS |
If you want the user to be able to view and analyze labor costs in the Labor Utilization Analytics, enter Y. If you do not want the user to have access to labor costs, enter N. |
Column |
Description |
USERGROUP |
If you imported security data from Costpoint, this column contains the imported user groups that have N in ALLORGSACCESS in the USERGROUPS worksheet (see USERGROUPS Worksheet Data). The ACCESSIBLEORGS column contains the organizations to which each group has access. A user group with access to multiple organizations has a row in this worksheet for each of those organizations. If you added a user group in the USERGROUPS worksheet and entered N in ALLORGSACCESS, you can select that user group in this column. |
ACCESSIBLEORGS |
If you imported security data from Costpoint, this column contains the organizations to which each group has access. A user group with access to multiple organizations has a row in this worksheet for each of those organizations. You can add, change, or delete rows to change the default organization access. If you added a user group in the USERGROUPS worksheet and entered N in ALLORGSACCESS, you can select that user group in the USERGROUP column and then enter an organization in this column to which you want that user group to have access (see USERGROUPS Worksheet Data). Repeat these steps for each combination of user group and organization. |
ORGLEVELANDBELOW |
If you imported security data from Costpoint, this column contains Y or N to indicate, for each combination of user group and organization, whether the user group also has access to all lower level organizations below that organization in the hierarchy. You can change the default setting. If you added organization access for a user group, enter either Y or N for each combination of user group and organization to indicate whether or not the user group should have access to lower level organizations. |