Enterprise Security Groups in OnePlan - Overview

  • Updated

Direct Answer: What Is an Enterprise Security Group in OnePlan?

An Enterprise Security Group in OnePlan is a named-resource permission profile, configured by an administrator, that controls which license type a resource consumes, which global permissions the resource is granted (such as viewing or editing all plans), which plan-level apps and areas the resource can access, and which navigation modules are visible to that resource. Every named resource in OnePlan belongs to exactly one Enterprise Security Group, managed from Resource Center > … > Configure > Enterprise Security Groups.


What This Article Covers: Enterprise Security Groups

This article introduces Enterprise Security Groups, explains what they control, and points you to the procedural articles for creating, updating, assigning, and defaulting them.

What you will accomplish: By the end of this article, you will understand what Enterprise Security Groups are, what they control, who they apply to, and where to go next to create or manage them.


Who This Article Is For: Enterprise Security Groups

  • OnePlan administrators responsible for configuring user access and permissions.
  • Administrators setting up or reorganizing named resources in the Resource Center.
  • Administrators troubleshooting why a resource can or cannot see certain plans, apps, or navigation areas.

Why This Matters: Enterprise Security Groups

Centralized access control

Enterprise Security Groups give administrators a single, reusable place to define what a category of users can do in OnePlan, rather than configuring permissions one resource at a time. Assigning a resource to the correct group is what grants that resource an appropriate level of access.

Named resources only

Enterprise Security Groups apply only to named resources — the people who log in to OnePlan — not to generic resources (Work, Material, or Cost types that are not tied to a specific person). See Users vs. Resources in OnePlan - Overview for how named and generic resources differ.

Consistent licensing and permissions

Because each group defines a license type along with its permissions, assigning resources to groups keeps license consumption and access levels consistent and predictable across your organization.


Understanding Enterprise Security Groups in OnePlan

What a group controls

Each Enterprise Security Group determines:

  • Which apps and areas users in the group can access.
  • What plan-level apps are available to users in the group.
  • What type of license each user in the group consumes.
  • What global permissions users have (for example, view all plans, edit all plans, or administer OnePlan configuration).

Context: Where groups are managed

Enterprise Security Groups are configured from the Resource Center, via Resource Center > … > Configure > Enterprise Security Groups. From there, administrators can create new groups, update existing groups, set a default group for new resources, and assign resources to a group.

Enterprise Security Groups Overview.png

Enterprise Security Groups can also be managed programmatically. See How to Assign a Security Group to a Resource via the OnePlan API and Supported Javascript Functions for Enterprise Security Groups for related configuration options.


Frequently Asked Questions: Enterprise Security Groups

Q: Do Enterprise Security Groups apply to generic resources?

A: In OnePlan, no. Enterprise Security Groups apply only to named resources. Generic resources (Work, Material, or Cost type) are not tied to a specific person and do not consume a license or hold a security group assignment.


Q: Can a resource belong to more than one Enterprise Security Group?

A: In OnePlan, each named resource is assigned to a single Enterprise Security Group at a time, though administrators can update that assignment at any point. See How to Assign Resources to Enterprise Security Groups in OnePlan.


Q: Where do I go to create or manage Enterprise Security Groups?

A: In OnePlan, go to Resource Center > … > Configure > Enterprise Security Groups. From there you can create new groups, edit existing groups, set a default group, and assign resources to groups.


What to Do Next: Enterprise Security Groups

Create and manage groups:

Advanced configuration:

Review the full resource management process:

Related to

Was this article helpful?

0 out of 0 found this helpful

Comments

0 comments

Article is closed for comments.