User groups
Each group can contain both users and other groups. Users and groups can be members of multiple groups at the same time. User groups are mainly used for bulk management of user permissions, in which permissions are granted to the entire group at once (rather than to individual users individually).
You can manage user groups in Administration - Groups. You can manually edit the list using the normal New commands, Edit and Delete. To learn more about assigning permissions, see Object Security.
When loading users from Active Directory (AD), user groups are also loaded from AD, so you can use AD-defined groups to manage permissions in Alvao.
Core system user groups
Group | Description |
---|---|
Administrators | Users in this group have access to the Alvao system administration. |
Configuration administrators | Users in this group have access to the following agendas in Alvao system administration:
They can still manage all shared views in the app. |
Contact administrators | Users in this group can manage people (except for changing group memberships) and organizations in Alvao WebApp - Manage. |
Contact readers | Users in this group can search for all users and organizations. They can also see the values of users' and organizations' custom fields. |
Everyone | All users. This group contains all registered users and Guest users. |
Insider Preview Testers | Users with access to the Insider Preview features. |
Registered users | All registered users. This group contains all users except the Host user. |
Team managers | Users in this group can manage their reports on the My Team page. |
Service Desk system groups
For the recommended structure of requester groups, see Service roles.
Group | Description |
---|---|
Administrator of knowledge base root | Users in this group can manage articles in the knowledge base that are not included in any service. To do so, they do not need to be members of the management team of any service. |
Creators of tickets on behalf of other users | Users in this group can create tickets for other users from the same organization. They can fill in the Requested for field on the ticket creation form. |
People reporting time | Users in this group can report their time to tickets. |
Service administrators | Users in this group can manage services, SLAs, processes, and uptime. |
Asset Management system groups
Group | Description |
---|---|
Accountant | Users in this group can write inventory numbers to the IT device records. |
Asset Management administrators | Users in this group have unrestricted access to all parts of the system, managing system dials and the system recycle bin. |
Asset Management readers | Users in this group have read-level access to IT device records, software licenses, software auditing, and scans. |
Asset managers | Users in this group have unrestricted access to IT device records. The asset manager can change the object type only for computers and only to a different type of computer. |
Object property administrators | Users in this group can edit the values of object properties. |
Object property readers | Users in this group can see object properties and their values. |
Object relation managers | Users in this group can manage relations for all objects regardless of object permissions (but they cannot read values of their properties unless they have permissions to do that). |
Object relation readers | Users in this group can see all object relations. (But cannot see values of objects they do not have permissions for.) |
PC software managers | Users in this group may be notified of missing software licenses. |
Software and hardware scan managers | Users in this group can manage software and hardware scans on computers and manage a library of software products. Only this group (with AM administrators) can see unrecognized registry entries. |
Software licenses managers | Users in this group have unrestricted access to software license registry and software auditing by default. They manage software products. If licenses for multiple organizations are recorded separately, then permissions are not tied to membership in this group, but to the permissions set in software license security. |
Software profiles managers | Users in this group can create and edit software profiles of computers for ALVAO Asset Management. |