Show last authors
1 {{box cssClass="floatinginfobox"}}
2 {{toc/}}
3 {{/box}}
4
5 The Administrator Security screen is used to define the **Permitted Tasks** and **Permitted Administrative Organisation Access** for all users who are designated as an administrator. Access to the screen is thorough the **Users > Administrator Security** tab.
6
7 [[image:PECOS Admin.WebHome@Fig 21.8 - Menu tabs (administrator security).png||height="90%" width="90%"]]
8
9 An administrator is first defined by selecting the **‘Administrator’** **Role** in their **user profile**. Access to the **P2P Admin** tab is permitted when this role is selected.
10
11 **Until permissions are granted within the Administrator Security screen, although the user can access P2P Admin, they are unable to perform any administration tasks.**
12
13 = Administration Permissions =
14
15 **Profile Security**
16 As an administrator with access to Administrator Security, you can set or change permissions for all other administrators within your own permitted organisation access level. You are **NOT** able to access and change your **own** administration profile: only another administrator within your organisation (or parent organisation) with similar task permissions can modify your administration profile.
17
18 Administration rights are **TOP DOWN**. This means that an administrator can only administer the organisation that they have been given rights to administer and that organisation’s subordinate organisations, not any of its parent levels.
19
20 **Flexibility**
21
22 Not all administrators are granted rights to perform //all// tasks across //all// organisational levels. PECOS P2P allows you to define different tasks (menu options) and organisational level access for each administrator, thereby defining different grades and/or organisationally specific levels of administration.
23
24 = Assigning Administrative Tasks =
25
26 1. Click the** Users > Administrator Security **tab to open the **Administrator Security** screen.
27 1. On the Administrator Security page the current administrators are listed in the ‘Administrators’ box. (These are the users who have the role of administrator within their user profile).
28 1. Scroll down the box and click on the administrator’s name whom you want to create or edit.
29 [[image:PECOS Admin.WebHome@fig 22.10.png||height="90%" width="90%"]]
30 1. To **assign** permissions:
31 1*. In the **‘Available Administrative Tasks:’** box select a task that you want the administrator to perform. Move this task to the ‘Permitted Administration Tasks:’** window**
32 1*. If you want to grant all administrative tasks to this user, click the **>>** (move all) button. All tasks will move to the **‘Permitted Administration Tasks:’** window.
33 1. When you have finished, click **Update**.
34 1. To remove permission:
35 1*. Click on the task to be removed in the ‘Permitted Administration Tasks:’ box. . The task will move to the ‘Available Administration Tasks:’ window.
36 1*. To remove all tasks, click the **<<** (move all) button. All tasks will move to the **‘Available Administration Tasks:’** window.
37 1. When you have finished, click **Update**.
38
39 = Available Administrative Tasks =
40
41 Most administration tasks are self explanatory and allow access to an administration menu option. The available tasks are listed below with a brief explanation of their access permissions.
42
43 * **Address Maintenance:** Allows access to the **Address** options in various screens for the maintenance of company, supplier and PCard addresses.
44 * **Administration Audit Trail:** Allows access to the **Utilities > Audit Log** tab.
45 * **Administration of Punchout Data:** Allows access to the **Punchout** screen in the **Supplier Profile**.
46 * **Administrator Security:** Allows access to the **Users > Administrator Security** tab. This option allows an administrator to create and edit administrator profiles and should be granted only to senior administrators.
47 * **Announcements:** Allows access to the **Company > Announcements** screen to create and manage Announcements.
48 * **Approval Plans:** Allows access to the **Approval Rules > Approval Plans and Approver Roles** tab, allowing the creation and maintenance of approval plans.
49 * **Approval Rule Groups:** Allows access to the **Approval Rules > Approval Rule Groups** tab.
50 * **Archives:** This option is not currently used.
51 * **Attachments:** This option gives access to the **Utilities > Attachments** tab and enables the creation and maintenance of system assigned document attachments.
52 * **Budget Editor:** When the budgeting module is implemented, this option provides the administrator with restricted access to budgets and budget data. Rights allow full management of inactive budgets but do not allow access to activate or manage active budgets and provide view only rights for alerts and approvals for active budgets. The **Financial > Budgeting** tab is enabled.
53 * **Budget Manager:** When the budgeting module is implemented, this option provides the administrator with unrestricted access to upload and fully maintain budgets and budget data. The **Financial > Budgeting** tab is enabled.
54 * **Business Rule Groups:** This option gives access to the **Business Rules > Business Rule Groups** tab. This option allows administrators to create and maintain access groups for catalogues, financial tracking codes and procurement cards.
55 * **Catalogue Content Management:** This option is provided for future development to allow fully integrated access to the Elcom Catalogue Content Management module. It provides access to the **Catalogue > Catalogue Content** tab which is a place holder only and provides no functionality at this time. This option should not be permitted to any administrators.
56 * **Catalogue Maintenance:** This option gives access to the following tabs. **Catalogue > Items; Catalogue > Categories; Catalogue > Collections **and** Catalogue > Catalogue**. This allows full access to catalogue maintenance options.
57 * **Company:** This option gives access to the **Company > Organisation Maintenance** tab, allowing the administrator to add and maintain all organisational data.
58 * **Create Organisation Structure:** This option is not used.
59 * **Currency Maintenance:** This option allows access to the **Financial > Currency** tab, enabling the administrator to maintain currency conversion data.
60 * **Document User Field Maintenance:** This option allows access to **Utilities > User Field Definitions **tab, enabling the administrator to create Order and Invoice user defined fields.
61 * **Dynamic Options Maintenance:** This option allows access to the **Company > Dynamic Options** tab.
62 * **Financial Calendars:** When the budgeting module is implemented, this option enables the administrator to maintain financial calendars in the PECOS P2P administration module. The **Financial > Financial Calendars** tab is enabled.
63 * **Financial Tracking Codes:** This option allows access to the **Company > Financial Tracking Maintenance** tab. With this option the administrator is able to maintain and add all financial tracking code data within accounting methods.
64 * **Outstanding Approvals:** This option allows access to the **Approval Rules > Outstanding Approvals **tab. Here the administrator is able to review all outstanding approval objects and optionally reassign to alternate approvers.
65 * **Procurement Cards:** This option allows access to the **Financial > Procurement Cards **tab, enabling the maintenance of all procurement card information.
66 * **Report Groups:** This option is not currently used.
67 * **Search Synonyms:** This option is granted only to L1 site administrators and allows for the management of catalogue search synonyms directly in the administration module. A **Synonyms** menu option is displayed under the Catalogues menu to provide access to the Search Synonyms screen.
68 * **Suppliers:** This option allows access to the **Suppliers > Profile **and** Suppliers > User Fields** tabs. Administrators are able to edit and create all supplier information.
69 * **Suppliers-Financial Info:** This option allows the administrator full access to the **Financial Information** screen of the supplier profile. The 'Suppliers' task allows read only access but this task allows full data entry and editing permission.
70 * **Templates:** This option allows access to the **Company > Templates** tab, allowing the administrator to manage all Templates (i.e. delete or change ownership) within their organisation.
71 * **Users:** This option allows access to the **Users > Profile** tab for the administration of all user profiles. Note that access is not given to the Administrator Security sub menu which is a separate permission.
72
73 **New product releases**
74
75 When a new PECOS P2P product version is released that contains new functionality contained in new menu options, these options are not automatically granted to existing administrators. A new ‘Available Administrative Task’ will be created that must be granted to appropriate administrators through the editing of their administrator profile. Upon release of a new feature, Client Services will enable new options for the site administrator only.
76
77 = Assigning Administrative Organisations =
78
79 After assigning administrative tasks, thereby defining //**WHAT**// tasks this administrator is to perform, you must next select //**WHERE**// they are to perform their tasks. To do this scroll down to the** ‘Permitted Administration Organisations:’** section of the Administrator Security screen.
80
81 [[image:PECOS Admin.WebHome@fig 22.11.png||height="90%" width="90%"]]
82
83 * To define in what level of the organisation your selected administrator is to have permission to perform their administrative tasks, click on the **Add/Remove Orgs** button. An **Organisation Assignment** sub window will open displaying the PECOS P2P organisation tree.
84 ** In the **Organisation Assignment** window select all appropriate organisations by clicking on the organisation name in the organisation explorer window. Open each subordinate organisational level by clicking on the ‘+’ symbol.
85 Note that the highest level organisation only need be selected for each organisational branch: all subordinate organisations will be included by default.
86 ** You may **select more than one organisation**. Simply drill into the organisation explorer tree and click on the organisation name. Note that a subordinate organisation of an organisation already selected will not appear as a separate selection, since it is already included by default.
87 ** **To remove a selection:** highlight the selected organisation in the table and click the **Remove** button.
88 ** **Default Organisation.** By default, the first selected organisation will become the administrators **default organisation**. To change this default, highlight an alternative organisation that you have selected and click the **Set Default Organisation** button. The new default will appear at the top of the organisational unit selection. The administrators default organisation is explained below.
89 * When you have finished selecting all the organisational permissions for your administrator click the** Finished** button. The Organisation Assignment sub window will close and your selections will populate the Permitted Administration Organisations box on the Administrator Security screen.
90 * Click the **Update** button at the top of the Administrator Security window to save your settings.
91
92 = Default Organisation =
93
94 All administrators must have a **Default Administration Organisation**. This will define the organisation that all data is saved to when the administrator creates a record in PECOS P2P.
95
96 It is important that data is saved to the appropriate organisational level since this affects its access permissions to other system administrators. An administrator will not be able to access a record that is saved to an organisation above their assigned administrative organisation permissions.
97
98 = Organisation Override =
99
100 If you are setting administrative permissions for an administrator who has access to an organisational hierarchy or multiple organisations, you can allow the administrator to **override** their default administration organisation.
101
102 To do this, check the **Organisation Override** box in the Administrator Security window.
103
104 This will enable the **Organisation **button to display in a number of the administration windows. This then allows the administrator to open an organisation explorer window, prior to saving data, and select an organisational level that is not their default organisation. The data record will then be saved to the selected (overridden) organisational level for administration purposes. This override selection will operate only within the administrators permitted organisational permissions.
© Elcom Systems Ltd 2025