Skip to main content
1-Visitor
May 18, 2011
Question

Using Roles

  • May 18, 2011
  • 12 replies
  • 4009 views


Hi All,


We are currently using custom groups mapped to ACLs for permission control. We are interested in using the OOTB roles feature and are wondering what the benefits are to using groups versus roles.


Would anyone be willing to share their experiences?


Thank you,


- Shaylyn



12 replies

16-Pearl
May 23, 2011

FYI - PTC wrote a white paper on using dynamic roles called Using Dynamic Roles for Centralized Administration of Access Policy Rules. Appendix A of the paper shows the format of the .xml template file used to load the rules at the Org level (Default/PDM) as well as the wt.load.LoadFromFile command. I used this technique and it worked well. However, it only adds to the rules, not deleting or modifying them.


If anyone has found a way to use wt.load.LoadFromFile to modify or delete existing data, I'm sure the community would be interested in the technique.


Regards,


Daniel Nordin
BAE Systems

1-Visitor
May 26, 2011

I use roles both to assign ACL's and for Promotion & Change Control sign-off. I will also assign a principle user to a role, say Quality Engineer and than the group 'Quality Engineers' to the role. This give me the user to assign to the signature role and access to the Product for the rest of the quality team. This works for us in most cases.


This is my technique for windchill 8.0 production. Havn't gotten far enought test in 9.1 to see how it works...



Kathy