mKsiegowa.pl offers flexible access level control system. It makes the program suitable for multi-user installation.
Security schema
The access control system uses following concepts:
- Security area - elementary fragment of application functionality which is placed under control of access system;
- Security role - set of security areas which is accessible for user with some role in company;
- Security section - a couple of security areas of similar application grouped together to make roles defining easier.
Security areas have two main properties: identifier and description. Description is used to identify area in security roles editor, while the identifier is to identify user’s permissions.
Every security area belongs to one security section, which can be considered as upper level of access control.
Access Setup
The role based access system is constructed that every user defined in the system has assigned role related to his position in the company. For any user, only security areas which belong to user's role are accessible.
To grant access to any security area for any role, administrator first have to make accessible also related area's security section. Switching security section off disables access to all related security areas.
Security roles predefined in mKsiegowa.pl can be customized or completely rewritten by administrator according to company internal security policy.