Security Profile fields

The table below explains the standard fields on the Security Profile panel.

Field

Description

Profile name

The security profile assigned to the user. Select from a list of existing profiles. If no profiles are set up, this defaults to the system administrator's security profile, Profile 1. For more information, see Adding a new security profile.

Mobile device access

Allows access from a mobile device.

External logon allowed

Indicates whether the user can access Sage CRM from a remote location. Only available in systems with the Extensibility Module. A third-party that needs to access the COM interface, must access Sage CRM as a user with this field set to True. For example, a user with this privilege is required for on-premises Exchange Server or cloud-based Exchange Online to access Sage CRM for Exchange synchronization. Similarly, Self Server ASP pages need to access the system in this way.

Change p/w at next logon

Specifies whether the user much change their password the next time they log on. Once they have done so, the value of this field is automatically set back to False.

Password never expires

The password is only changed when the user wishes, or when the System Administrator resets it.

Cannot change p/w

The password can only be changed by the System Administrator.

Password expiry date

Automatically set by the system according to Amount Of Days To Password Expiry on the User tab within the configuration context.

My CRM lists

Sets access to lists in the My CRM area. This can be set so a user sees only their own lists of pending work in the My CRM area list or lists of all other users.

Team lists

Sets access to the Team CRM area. This can be set so a user sees their Primary and Display Teams (User's Team), all teams, or none.

Reports

  • No Reports: The user has no access to reports.

  • Personal Reports: The user can see, run, and edit their own private reports.

  • Enterprise: The user can see, run, and edit any database stored report unless it is marked as private.

  • Crystal Reports: The user can see reports in all these categories, as well as all Crystal Reports. Crystal is not currently supported by Sage CRM. This setting remains for backward compatibility for customers who are continuing to use unsupported versions of Crystal.

Solutions

Access levels for Solutions. Security access to Solutions is controlled using this setting only not using Territory Management.

Forecast rights

  • For All Users In Territory: Allows a manager to access the forecasts of other users in the same territory (or a territory below their own) by changing the user name in My CRM.

  • For This User Only: A user can only access their own forecast.

Restrict sensitive info

Specifies rights for viewing sensitive company information.

  • No restriction: The user’s access to sensitive company information in tabs is not dependent on being a member of the company team.

  • Must be on company team: The user is able to view sensitive company information (Quick Look, Notes, Communications, Opportunities, Cases, and Documents tabs) only if the user is a company team member for the current company being viewed. However, if the user is the account manager for the current account, the user has unrestricted access to tabs.

Restrict updates

Specifies rights for updating sensitive company information. The settings work in conjunction with the value in Company Team.

  • No restriction: The user’s update rights are not dependent on membership of the company team. However, territory access rights still apply.

  • Must be on Company Team: If the Company team field is set to No Access or View Only, the user is not allowed to update company records. This restriction is implemented by hiding the Change button. This setting is not dependent on team membership or territory access rights.

    If the Company team field is set to View Only, Upd/Ins, or Upd/Ins/Del, the user can update company records only when a member of the company team for the current company being viewed. However, if the user is the account manager for the current account, update rights are unrestricted, territory access rights permitting.

Company team

Sets access to the Company Team tab.

Merge persons/companies

Gives the user rights to deduplicate people and companies using the merge functionality.

Assign individual to company

Allows the user to associate a person with a company. Assigning a person to a company also moves all related communications, opportunities, and cases to the company.

Allow Web Service access

Enables the current user for Web Service access.

Administration

Sets the administration rights of a user. There are three types:

  • No Admin Rights: A basic user with no access to Administration.

  • Info Manager: A user with more rights than the basic user (such as creating Interactive Dashboard templates) and limited access to Administration when combined with the Info admin rights field. For more information, see Creating an Info Manager.

  • System Admin: A user with full access to Administration.

Info admin rights

One or more specific info admin rights can be selected, if Administration is set to Info Manager. For more information, see Creating an Info Manager.

Group access

Enables the current user to access Groups functionality. Users who have not been granted access cannot view, create, or edit groups.

Mail merge to Word

Allows the user to perform mail merges that create Microsoft Word documents and also to perform mail merges that create PDFs. If set to No, the user can only perform mail merges that create PDFs.