Set Up Organization Security

Use this procedure to set up your organization security.

To set up organization security

  1. On the Configure System Settings (SYMSETNG) screen, select the Apply Organization Security check box. This is the organization security master flag. If this check box is not selected, then organization security will not be applied in Costpoint even when Apply Org Security check box is selected by module and/or application on the Activate/Inactivate Organization Security by Module (SYMORGFN) screen.
  2. On the Activate/Inactive Organization Security by Module (SYMORGFN) screen, select the modules and applications for which you want to enable/disable organization security by selecting Apply Org Security check box next to each of the modules (Modules setting table) and applications (Applications setting table).
  3. On the Manage Organization Security Profiles (SYMORPRF) screen, create an organization security profile, and select Apply Org Security. Selecting this check box grants profiles full rights to organizations. If you clear this check box, you do not need to enter anything into the Assign Organizations to Profile table window.
    Note: There must be at least one organization ID linked to the organization profile, if Apply Org Security check box is selected, otherwise, the user profile will have access to all organizations.
  4. Select the rights application method for the profile.
    • If you select Inclusive, your profile ID is granted full rights to the organizations displayed in the Assign Organizations to Profile table window.
    • If you select Exclusive, your profile ID is granted full rights to the organizations not listed in the Assign Organizations to Profile table window.
    • If you select Both, Costpoint displays all organizations to which this profile is associated with in the Assign Organizations to Profile table window, and then you can grant or deny access to certain organization IDs for a profile. This is useful if you want to provide access to most, but not all, branches of a particular organization tree.
  5. On the Manage Organization Security Groups (SYMORGRP) screen, enter an identification code and a descriptive name for this organization security group.
  6. Enter the security profile you want to assign to Costpoint modules. The field to the right displays the descriptive name for this organization security profile. Alternatively, you can click the unlabeled field to select the name of the organization security profile you want to use, instead of its identification code.
    Note: For each module, you need to specify an organizational profile ID that was set up on the SYMORPRF screen.
  7. Click Assign Profiles to load the new modules and assign organization security profiles. This populates the Assign Profiles to Modules table window.
    Note: If organization security is enabled for a module or application, but it is missing from the list of organization security group and there is no organization security profile assigned to it, then the user linked to the organization security group will be denied access to all organizations and will not be able to neither create/enter new transactions nor view transactions.
  8. On the Manage User Groups (SYMGRP) screen, assign an organization security group to the user ID.
    Note: You must establish at least one user group for each company before you can create any user ID in the Manage Users (SYMUSR) screen. You can assign users to user groups on this screen or using the SYMUSR screen.
  9. On the Manage Users (SYMUSR) screen, assign an organization security group to users. You can assign an employee ID to multiple Users. In addition, you can also link employees to user IDs from the Manage Employee Information (LDMEINFO) screen.
  10. On the Update Organization Security Profiles (SYPORGPF) screen, click Update Org Security Profiles to run this application.
    Note: You must run the application either after setting up all organizational profiles or after any time you add an organization or change and/or add a profile. Run this for all profiles when first setting up organizational security and when using the range feature for maintenance.
  11. On the Rebuild Global Settings (SYPSTNG) screen, click Reload Settings to restart services without interrupting user activity after changing the settings.
  12. Log out of the system and log back in if the logged-in user ID is associated to an organization security group/profile for the changes to take effect.