Predefined Roles About Permissions

Managing Security and User Access 5-39 security, ensuring that only users who need access to certain documents can modify them. Figure 5–3 Example of Roles and Security Group Access

5.4.3.1 Predefined Roles

The following roles are predefined on the Oracle Content Server system:

5.4.3.2 About Permissions

Each role allows the following permissions for each security group: Read R, Write W, Delete D, or Admin A. The permission that a user has to access the files in a security group is the highest permission defined by any of the users roles. If a user has the guest and contributor roles, where guest is given Read permission and contributor is given Write permission to the Public security group, the user will have Write permission to content in the Public security group. As shown in Figure 5–4 , Joe Smith and Ann Wallace have permissions to two security groups: ■ Joe Smith has Read, Write, and Delete permission to the EngDocs security group, but only Read permission to the HRDocs security group. As a member of the EngUsers role, he has been given Read, Write, and Delete access to Engineering Documents, but only Read access to Human Resource documents. ■ Ann Wallace has Read, Write, and Delete permission to the HRDocs security group, but only Read permission to the EngDocs security group. As a member of the HRUsers role, she has been given Read, Write, and Delete access to Human Resource documents, but only Read access to Engineering documents. Roles Description admin The admin role is assigned to the system administrator. By default, this role has Admin permission to all security groups and all accounts, and has rights to all administration tools. contributor The contributor role has Read and Write permission to the Public security group, which enables users to search for, view, check in, and check out content. guest The guest role has Read permission to the Public security group, which enables users to search for and view content. sysmanager The sysmanager role has privileges to access the Admin Server on the Oracle Content Server system. 5-40 Oracle Fusion Middleware System Administrators Guide for Oracle Content Server Figure 5–4 Example of Assigned Permissions

5.4.3.3 Predefined Permissions