Authentication & Authorization
Table record restriction
While Permissions is used to define which Table(s) and Field(s) users can see and/or edit, this capability is used restrict visibility to subset of records within a Table. For example, if a subset of users is only allowed to view Incidents that they raised or raised for them, the following need to be configured A role (or can use an existing Role if it fits your broader security model) Permission(s) to allow Read access to the Incident table for the Role in step 1 above Table record restriction to restrict access to Incidents raised by or raised for currently logged on user, if the user has the Role in step 1 above Role assignment to the User(s) that need to get such restriction (can be done via Group membership too) Whenever a query is performed on a Table, and this includes viewing a record directly via a link, the platform checks if there is any Table record restriction defined for the Table If there is, the Query script defined in a Table record restriction will run.
Groups
Groups within Servicely provide the ability to logically group people in the same container, whilst providing them roles automatically based on being held within a group.
Platform Roles
Within Servicely the way to restrict certain information is largely done through referencing a user's set of roles or lack there of. Roles provide the ability to allow, restrict and logically separate visibility and access of records to users.
Permissions
When configuring the underlying security of the platform, the use of permissions is heavily used. It allows you to restrict visibility and access to records, fields and workflow transitions based on a combination of a user's role and condition of the permission.
Base Platform roles
The security model was set up in a way that ensures that the platform is not necessarily focused on one business area. What this means is that service management platforms are commonly set up and focused on IT side of the business, by having roles or otherwise require some role related to the platform's ITSM suite.
Enhanced Security Properties
This page outlines options and recommendations on settings that can be used within the Servicely application to customise the security configuration to meet individual company requirements.