Fine-Grained Access

Fine-Grained Access

Set up fine-grained access to allow/restrict technician access to certain assets/consumables based on criteria or product types.
 
For instance, you might want only certain technicians to be able to work with routers, switches, and printers. You can set up Fine-grained Access (FGA) to permit access to product types containing routers, switches, and printers and then associate the FGA to the designated technicians.
 
 
Role Required:
Asset FGA can be configured by SDAdmin and AssetConfig
CMDB FGA can be configured by SDAdmin and SDCMDBAdmin
 
You can set up fine-grained access for assets and CMDB.
  1. Go to Setup > Users & Permissions > Fine-Grained Access.
  2. Use the filter at the top to go to the relevant FGA page - Asset or CMDB.
  3. Click New FGA.
  4. Enter a name and description for the FGA configuration.
  5. Select the technicians you want to link with this FGA. You can associate a maximum of 100 technicians on this page. To add more technicians, use the Manage Technicians option in the FGA list view.
Info
For Asset FGA, technicians with SDAdmin, SDAssetManager, and AssetConfig will not be displayed in the drop-down as these roles can access all assets and consumables. 

For CMDB FGA, technicians with SDAdmin, SDCMDBAdmin, and SDCMDBManager roles will not be displayed in this list as they have visibility over all CIs in CMDB.
  1. Under Fine-Grained Access Configuration, select the product or CI types.
    1. For Asset FGA, choose which product types the selected technicians should have access to:
      1. All Product Types: The technician will have access to all product types.
      2. Select Product Types: Select the product type that the technician can access.
    2. For CMDB FGA, choose the CI types the selected technicians should have access to:
      1. All CI Types: The technician will have access to all CI Types.
      2. Select CI Types: Select the CI type that the technician can access.
  2. If you wish to fine-tune the FGA access, enable Advanced Criteria and define the parameters. Advanced Criteria cannot be applied to consumables.
  3. Finally, click Save to apply the settings.
Info
Fine-grained access will be applied based on the user's system permissions. If the technician is limited to specific sites or has restrictions on viewing or editing assets, then the fine-grained access restrictions will also be limited to the same. 
 
Asset FGA:
 
CMDB FGA: 

List View Actions 

  1. Use the filter at the top to view FGAs set for Assets or CMDB.
  2. Locate specific FGAs using the search function.
  3. Customize the list view by sorting columns and adjusting the number of records shown per page as needed.
  4. You can also perform the following actions on the FGAs:
    1. Click to edit or delete an FGA configuration.
    2. Click to manage technicians configured in the FGA. In the pop-up, you can associate more technicians to the FGA or disassociate existing technicians.
Info
 You can view a technician's FGA associations under Setup > Users & Permissions > Users > Technicians. In the technician list view, click the settings icon against the technician and select View FGA associations