Assigning privileges to users

2026-07-23Last updated

If the privileges of a pre-configured role don't meet a user's needs, you can adjust their privileges in Genetec™ Configuration desktop.

What you should know

  • Users are granted a basic set of privileges by the role they are assigned when their profile is created. They also inherit privileges from their parent user groups.
  • Users also have a set of privileges for every partition in which they are an authorized user. Privileges granted or denied at the partition level replace the basic privileges. These can be different for each partition the user has access to.
Best Practice:
Individual users should only have the minimum required privileges.

Procedure

  1. From the homepage in Genetec™ Configuration desktop, click User management > Advanced .
  2. Select the user or group to configure, and click the Privileges tab.
  3. (Optional) Configure the user-level privilege settings:
    Allow
    Grant the privilege to the user. If the privilege is denied to the parent user group, this option is unavailable.
    Deny
    Deny the privilege to the user.
    Undefined
    Inherit this privilege from the parent user group. If there isn’t a parent user group, this privilege is denied.
  4. (Optional) Configure the privilege exceptions for each partition that the user has access to:
    1. At the bottom of the page, click Exceptions ().
    2. In the Create an exception for list, select a partition.
    3. Change the user's basic privileges as required.
    4. Click Create.
      The privilege exceptions are added at the bottom of the privilege list.
  5. Click Apply.
  6. (Optional) To allow the user to move entities between partitions they can access without granting them the full Add/Delete <entities> privileges, enable the following setting:
    1. Click the Advanced tab.
    2. In the Security section, enable the Manage partition memberships option.
      If necessary, switch Inherit from parent to Override to change this setting.
    3. Click Apply.
    Note:
    When you grant All privileges to a user, the Manage partition memberships option is also enabled. However, if you disable the Manage partition memberships option, it doesn’t affect the other privileges the user has.