Override a user's role permissions

When you assign a user to a role, the user inherits all permissions associated with the role. You can individually override a user’s permissions, either revoking permissions granted by the role, or granting permissions not normally granted by the role.

About this task

When creating overrides for authority attributes present in each stacked role, enter the override separately in each stacked role to avoid conflicts. This ensures that the system behaves as expected and prevents any issues that might arise from conflicting settings. For more information, see Role stacking for combined permissions.

Procedure

  1. Select Admin > User Management.
    The User Management page opens.
  2. Look up a user to find the user whose authority attributes you want to override.
  3. Scroll down to the User Roles List panel.
    This panel lists the roles to which the user is already assigned.
  4. In the Actions column corresponding to the role to override, select Override.
    The User Role Overrides panel opens.
    User overrides list shown.
  5. Locate the Attribute whose value you want to override.
    Some user roles have many attributes. If necessary, scroll to find the attribute to override.
  6. In the Override Value field, enter an appropriate override value.
    The override value must match the type of authority attribute you are overriding. Most values are Yes/No, while some are string values or numeric values. Use the Role Value field for the attribute as a guide.
  7. Optional: Assign a Start Date and an End Date for the override.
  8. Click Save.
  9. Repeat steps 5–8 to override additional authority attributes, as needed.
  10. Save your changes.