User groups
Each user group can contain both users and other user groups. Users and groups can be members of multiple groups at the same time. User groups are mainly used for bulk management of user permissions, in which permissions are granted to the entire group at once (rather than to each user individually).
You can manage user groups in Administration - Groups.
When importing users from Microsoft Entra ID, user groups are also imported, so you can use Entra-defined groups to manage permissions in Alvao.
System groups
System groups are built-in groups in Alvao. Each system group represents a user role with certain permission in Alvao. By putting a user in a system group you assign the role to the user.
Core
Group | Description |
---|---|
Administrators | Users in this group can configure all parts of Alvao in the Administration section. |
Configuration administrators | Users in this group can access and configure the following parts of Administration:
They can also manage all shared grid views in the app. |
Contact administrators | Users in this group can manage people (except for changing group memberships) and organizations in Administration - Users and Organizations. |
Contact readers | Users in this group can search for all users and organizations. They can also see the values of users' and organizations' custom fields. |
Everyone | All users. This group contains all registered users and also the Guest user. |
Insider Preview Testers | Users with access to the Insider Preview features. |
Registered users | All registered users. This group contains all users except the Guest user. |
Team managers | Users in this group can manage their reports on the My team page. |
Asset Management
Group | Description |
---|---|
Accountants | Users in this group can view and modify Inventory number object property values. |
Asset Management administrators | Users in this group have unrestricted access to all parts of the ALVAO Asset Management including the Administration - Asset Management. |
Asset Management readers | Users in this group have read-level access to objects, software licenses, and device scans. |
Asset managers | Users in this group have unrestricted access to objects. Asset managers can change the object type only for computers and only to a different type of computer. |
Object property administrators | Users in this group can edit the values of object properties. |
Object property readers | Users in this group can see object properties and their values. |
Object relation managers | Users in this group can manage relations for all objects regardless of object permissions (but they cannot read values of their properties unless they have permissions to do that). |
Object relation readers | Users in this group can see all object relations. (But cannot see property values of objects they do not have permissions for.) |
Software licenses managers | Users in this group may be notified of missing software licenses. |
Software and hardware scan managers | Users in this group can manage device scans and software product library. They can also view software scan items that were not recognized by the software product library. |
Software licenses managers | Users in this group have unrestricted access to the Software and Software licenses pages by default. You may modify its access rights in Administration - Asset Management - Software license security. |
Software profiles managers | Users in this group can manage Software profiles of tracked computers in the ALVAO Asset Management. |
Service Desk
Group | Description |
---|---|
Administrators of knowledge base root | Users in this group can manage knowledge base articles that are not included in any service. To do so, they do not need to be members of the service team of any service. |
Creators of tickets on behalf of other users | Users in this group can create tickets for other users from the same organization. They can fill in the Requested for field on the ticket creation form. |
People reporting time | Users in this group can report their work time to tickets. |
Service administrators | Users in this group can manage services, SLAs, processes, and working hours. |