Use & edit rights must be granted on the project, not dataset level. Currently this is not supported. Required is also object-oriented user management (e.g. only specific company codes etc.)
PM Project privileges | currently there is no option to assign project level privileges
PM Analysis privileges | currently there is no option to assign privileges on the single analysis level
More fine-grained functional privileges | currently access to certain modules cannot be restricted
Data-level privileges | option to configure user/group privileges on data scope, e.g. region, time frame etc.
-- the following requirements are less important --
DB/data set privileges | currently the database privileges in ARIS user management do not apply to process mining, but datasets need to be assigned view/edit rights within process mining data collection.
Analyst role without data model edit rights | from the analyst role
Separation of deletion & edit rights | Separatethe deletion rights from standard edit rights, and grant it only to the “Engineer“ role
Conformance check | should be configured from within PM without manual “export” from BPA → simplifying roles as well.
User rights simulation| To test the assigned privileges, it would be beneficial to have a simulation available for an admin user through which he can simulate the access
Validity of the privileges | Add the “valid from“ and “valid to“ conditions to each user/user group
Considered importance by requestor:
PM Project privileges | currently there is no option to assign project level privileges
PM Analysis privileges | currently there is no option to assign privileges on the single analysis level
More fine-grained functional privileges | currently access to certain modules cannot be restricted
Data-level privileges | option to configure user/group privileges on data scope, e.g. region, time frame etc.
-- the following requirements are less important --
DB/data set privileges | currently the database privileges in ARIS user management do not apply to process mining, but datasets need to be assigned view/edit rights within process mining data collection.
Analyst role without data model edit rights | from the analyst role
Separation of deletion & edit rights | Separate the deletion rights from standard edit rights, and grant it only to the “Engineer“ role
Conformance check | should be configured from within PM without manual “export” from BPA → simplifying roles as well.
User rights simulation | To test the assigned privileges, it would be beneficial to have a simulation available for an admin user through which he can simulate the access
Validity of the privileges | Add the “valid from“ and “valid to“ conditions to each user/user group