How roles and user rights work

Roles and user rights are very powerful in Can Do, but are often confused. This article will explain them.

Roles: define which tiles, i.e. which apps, a user can generally see.

User Rights: define who has access to the project and in what form. Is the user only allowed to view the project or is he also allowed to make changes?

Rights groups: A group of users with a specific right (read, change, etc.). When this group is assigned to a project, all users in the group automatically receive this right.

Admin Group: A special group within the rights groups that is always present. These users can, for example, assign users, i.e. assign or remove licences from the licence pool. They are the SuperUsers. 

Resadmin: A special user who cannot be removed. This user is always in the Administrators group and cannot be removed. It is a fallback user and is always the last administrator. If it did not exist, no users could be created or deleted. The password for this user is provided to cloud customers and is changed by the customer.