Connection between PPM user privileges and central User Management
Users and user groups can be created only in central User Management. In User Management, they can be assign additional function and license privileges, in particular the PPM user function privilege.
All users from User Management with the PPM user function privilege and all users existing in PPM are listed in PPM. Both conditions apply to activated PPM usersr. In addition, all user groups existing in User Management are listed in PPM, regardless of whether they have the PPM user function privilege or not. If PPM users or user groups are deleted in User Management, they are still listed in PPM, but marked by an icon (
) as deleted.
Users and user groups with the PPM user function privilege can be activated as users or user groups in PPM.
For users to be able to log in to PPM they must first be assigned the PPM login function privilege. Only users and user groups with the PPM user function privilege can be assigned privileges in PPM, as long as they are activated in PPM.
Only users with the PPM user function privilege and activated in PPM can access data in PPM in line with their data access privileges.
PPM users whose PPM user function privilege was withdrawn can no longer log in to PPM (even if they still have the PPM login function privilege) because they can no longer be authenticated in User Management. If the PPM user function privilege is withdrawn from users while they are logged in to PPM their current PPM session is not affected. However, they cannot log in to PPM again.
The users and user groups listed in PPM are available in all PPM components, regardless of their existence in User Management or their PPM user function privilege. Most actions can be run for all users listed in the PPM components. For example, distributing favorites to both active and inactive PPM users, or creating activities and system messages for active and inactive PPM users.
An exception are actions requiring data from User Management. For example, the automated analyses of the Instance controlling component can notify only activated PPM users because e-mail addresses are stored in User Management and therefore, inactive users do not have e-mail addresses.
Users with the UMC Administrator privilege
Users with the UMC Administrator privilege can create and delete users and user groups in User Management. PPM users with this privilege and the Privilege management function privilege can call User Management from PPM. They have the User Management button in PPM privilege management at their disposal.
Go to User Management
The system user
The system user has comprehensive administration privileges in User Management. This user can create and delete users and assign other users the PPM user function privilege in User Management. In PPM, the system user has all privileges and cannot be deleted.