Skip to main content

User Configuration

User permissions are managed through the User Configuration page, accessible via the Settings button in the bottom left corner, then selecting User Configuration.

Users can be either Administrators or Normal Users. 

Administrators

Administrators have full access and can modify every aspect of the system, manage all projects, categories, and tables, edit user permissions, create database users, and configure advanced settings including External Data Connectors.

Normal Users

Normal users are limited to the privileges set by Administrators. They cannot change other users or access advanced settings.

For finer control, permissions can be assigned at the table and column levels:

Table Permissions

  • Viewer: Can view table data and export it to Excel. They cannot edit data in any way.
  • Contributor: Can modify the data, such as adding and deleting rows and modifying cells. Contributors do not have access to the Table Designer and can therefore not edit the table structure, such as adding or removing columns. 
  • Administrator: Can modify tables, both design and data. 

Users can be given restricted access to table data by using the Access Filter property in the user configuration below.

Column Permissions

  • Viewer: Can view the column but they cannot edit data in any way.
  • Contributor: Can modify the data in that specific column.
  • Administrator: Not available for columns.

User Groups

User Groups in TimeXtender Data Enrichment streamline privilege assignment for large numbers of users, either through Active Directory (Entra ID) or manual configuration

Types of Groups

  • Entra Groups (Active Directory): Membership is defined by AD setup.

  • Manual Groups: Membership is manually assigned by administrators within TimeXtender Data Enrichment

Groups and users are displayed together in the user list UI, with a dedicated column listing group memberships for manual groups

To create a group, choose to add a User or Group, enter a name, select group type, add members (manual group only), and assign permissions. Group permissions apply to all group members but do not override higher individual permissions — the highest granted permission will always take precedence.

 

Group permissions are refreshed at each login, so changes are only effective the next time members log in.

Entra Groups can only be added once per Group ID, and their names currently do not appear in the user group list UI. Manual groups require all members to be removed before deletion.

Note: In order to use Entra ID groups in TimeXtender Orchestration & Data Quality the token sent by the App Registration needs to be configured to include the groups the user belongs to. This is done by opening Manage -> Token configuration under the appropriate App Registration and setting a groups claim for ID, Access and SAML to send Group ID, and select "Emit groups as role claims". It is also necessary to make sure the group types included in the tokens are Security groups, this is also done under the Groups Claim in Manage -> Token configuration

If the Entra Group has been saved it will be impossible to change the group selected or change it to a manual group.

 

Manual Groups – Members

To add new members to a manual group use the field at the bottom, below the Entra Group/Manual radio selector. You can search for users by typing the name.

Microsoft Entra Groups (Active Directory Groups) - Members

In Entra Groups members are defined by their membership setup in the Active Directory. An example of a way to manage Entra Group members is to login via the Microsoft Azure Portal.

 

Note: you cannot create multiple groups with the same name

 

Be the first to reply!