Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

BSN.Cloud offers a robust set of permissions features that allow you to protect your content and maintain the efficiency of your digital signage system—no matter how large it gets. These security features are scalable: you can choose exactly how complex you want your permissions system to be depending on the needs of your organization.

This page describes the BSN.Cloud permissions system and how to use the six predefined System Roles, which have fixed permissions that you cannot edit. A separate Custom Roles page describes how to create additional roles with custom permissions.

Role and User Access States

Role and user access can be in one of the following states:

  • An editable permission for a specific principal, entity, or operation has an enabled/disabled active toggle switch and a "remove" button.

    • For example, a custom Content Managers role with permission to execute just the Content - View Content operation under the selected Media File

  • An editable permission for a specific principal, entity, or parent operation has an enabled/disabled active toggle switch but without the "remove" button.

    • For example, a custom Content Managers role with permission to execute the Content (Full Control) operation under the selected Media File. In this case, permission to execute Content - View Content is inherited from Content (Full Control).

...

An editable permission is defined for a specific principal, parent entity. These permissions are displayed with enabled/disabled active. The toggle switch is grey and does not have a "remove" button.

  • For example, a custom Content Managers role has permission to execute any operation under any new content folder. These permissions are inherited from the parent content folder.

...

with

...

custom

...

If permissions are defined for a parent principal, operation, or parent entity and are not editable, they will be displayed with enabled/disabled but inactive and a grey toggle switch without the "remove" button.

  • These are permissions defined for System Roles, Personal Folders, Special Groups, etc.

...

permissions

...

.

Object and Operations Permissions

...

Viewers can view almost all aspects of a digital-signage system: content, groups, hardware statuses, logs, and schedules. However, they cannot affect anything on the company’s BSN.Cloud account.

Role and User Access States (Object Permisssions)

Role and user access can be in one of the following states:

  • An editable permission for a specific principal, entity, or operation has an enabled/disabled active toggle switch and a "remove" button.

    • For example, a custom Content Managers role with permission to execute just the Content - View Content operation under the selected Media File

  • An editable permission for a specific principal, entity, or parent operation has an enabled/disabled active toggle switch but without the "remove" button.

    • For example, a custom Content Managers role with permission to execute the Content (Full Control) operation under the selected Media File. In this case, permission to execute Content - View Content is inherited from Content (Full Control).

  • An editable permission is defined for a specific principal, parent entity. These permissions are displayed with enabled/disabled active. The toggle switch is grey and does not have a "remove" button.

    • For example, a custom Content Managers role has permission to execute any operation under any new content folder. These permissions are inherited from the parent content folder.

  • An editable permission is defined for a parent principal. It is displayed with enabled/disabled active and the toggle switch is grey and does not have a "remove" button.

    • For example, a custom Content Managers role has permission to execute any operation under any new content folder or media file. If you assign a new user to this role, permissions to execute all operations under all content folders (except their personal folder) and media files are inherited from their role.

  • If permissions are defined for a parent principal, operation, or parent entity and are not editable, they will be displayed with enabled/disabled but inactive and a grey toggle switch without the "remove" button.

    • These are permissions defined for System Roles, Personal Folders, Special Groups, etc.

  • If permissions are not defined for a parent principal, operation, or parent entity, the toggle switch is disabled and grey. There is no "remove" button.

    • For example, a role with incompletely defined permissions and a user who doesn't extend and override them.

Assigning System Roles

  1. Go to Admin > Roles in BrightAuthor:connected (you must be signed in to BSN.cloud).

  2. Select the column at the top of the listing and select/deselect the type of permissions to add or delete.

...