Access Granting


In a Nutshell

The External Access feature is used to grant access to company data.


Access

The External Access tab can be located by navigating to Account > External Access.


Roles

There are two types of roles:

  • User roles
  • Account roles

User Roles

1 A user can have multiple roles assigned.
2 User roles are assigned to a user of an Account.
3 The role with the less-restrictive permission will overwrite the others.
4 Using the user login, a user can Login to all webapps he has a subscription for plus the Admin app.
5 Depending on the account or the user role, a user has different permissions for their or 3rd party accounts in the Admin App.
Roll Name Assigned By Functions Constraints
USER Automatically assigned
  • Login to Admin
  • Edit own user data
  • Login to the apps if subscription is given
 
SUPERUSER
  • Account Login
  • SUPERUSER
  • EXTERNAL_SUPERUSER
  • ADMINISTRATOR
  • SUPPORT*
  • Login to Admin
  • Edit own and others' user data
  • Create users
  • Assign subscriptions
 
EXTERNAL_SUPERUSER
  • ADMINISTRATOR
  • SUPPORT*
Full access to OWN account & company settings only for external users**
EXTERNALUSER
  • EXTERNAL_SUPERUSER
  • ADMINISTRATOR
  • SUPPORT*
  • Login to Admin
  • Edit own user data
  • Login to the apps if subscription is given
 

*if access granted **External users are users created within a customer account but the owner is e.g. a coresystems support person


Account Roles

1 Account Roles are assigned to the Account Login.
2 An account can have multiple roles assigned.
3 The role with the less-restrictive permission will overwrite the others.
4 Using the Account Login an Account administrator can Login into the Admin app.
5 Depending on the Account or the User Role a user has different permissions within his and 3rd party accounts in the Admin App.
Role Name Assigned By Functions Constraints
ADMINISTRATOR ADMINISTRATOR, Cloud Database Admin
  • CRUD permissions on all Accounts / Companies
  • Assign EXTERNAL_SUPERUSER
  • Grant Access to companies / accounts
  • Named accounts only → It is always possible to identify the person behind the account.
  • Limited to database admins / operations / head architect / head of support to ensure a running system.
  • Limited List of ADMINISTRATORS must be show to all our customers within the access granting tool.
SUPPORT ADMINISTRATOR
  • Full access to OWN account & company settings.
  • Can create an access request to a customer account or company.
  • Access to 3rd party account or company if granted
  • Named accounts only → It is always possible to identify the person behind the account.
  • Only Coresystems internal or qualified partner accounts.
SALES ADMINISTRATOR Access to payment module to create invoices for SMS messages Named accounts only → It is always possible to identify the person behind the account
CUSTOMER Automatically assigned Login to Account in Admin. See Account details  

A Closer Look

Requesting Access

Only users with CONSULTANT or SUPPORT account roles can request access.



Field Description
Account Required. The account associated with the access request.
Company Required. The company for which data access is being requested.
Description Description. A description of the access grant request.
Requested By Required. The user responsible for the access request.
Valid From Required. The start date/time for which access is granted.
Valid To Required. The date/time on which access will end.

Granting Access

After an access request has been created, you can then grant access by selecting the GRANT button below the request record:



The granted access record will then display in the External Access view: