About device group access rights
Device group access rights enable WhatsUp Gold users to see or make changes to specific groups and devices. These rights can be enabled or disabled by the administrator and are disabled by default.
Device group access rights are useful when users need to view and edit only those groups that are pertinent to them, as would be the case with a large network with multiple network administrators. Device group access rights allow an administrator to grant each user rights to only the devices on the network for which that user is responsible.
: Elements in group folders are displayed based on the user right options selected for the parent folder.
Types of device group access rights
There are four types of device group access rights:
- . This right allows users to view groups and devices in the selected group. This right allows users to see the group's map and device list. Group-level reports are not affected by group access rights but are affected by user rights.
- . This right allows users to edit group properties and add, edit, and delete devices and other groups within the selected group.
- . This right allows users to view the device properties of all devices within the selected group. Device-level reports are not affected by group access rights but can be affected by user rights.
- . This right allows users to edit the device properties of any device within the selected group. Device Write also allows users delete the device from the group if they also have Group Write access.
: To add a device to a group, a user must have Group Write rights to that group.
: When enabled, group access rights are applied throughout WhatsUp Gold. Device pickers, group pickers, and group views all respect what a user account is granted permission to view and edit. Reports are not affected by group access rights but are affected by user rights.
The following is a list of operations and the group access rights that must be assigned for the user to perform that task:
- List and Map in the Group Views menu require access.
- Create Group and Group Properties in the Group Operations menu require and access.
- Copy Group requires in the source group, and and in the destination group. (Permissions to groups and sub-groups are copied, not inherited from the new parent.)
- Move Group requires and in both the source and the destination groups. (Permissions of the group and sub-groups remain the same.)
- Delete Group requires ,, , and recursively. (Device Read Write may not be required if the group is empty.)
- Create Device requires , , , and . If the device already exists in other group(s), you must also have ,, , and in one or more of those groups.
- Copy Device requires in the source group andand in the destination group. The level of device permissions must be the same in both groups. Downgrade fromand to is also permitted.
- Move Device requires and in both the source and the destination groups. The level of device permissions must be the same in both groups. Downgrade from and to is also permitted.
- Viewing Device Properties requires .
- Modifying Device Properties, Bulk Field Change, and Acknowledgement require and .