ロール(標準)(Role)|iDempiere 13 画面リファレンス
ロール(標準)(Role)
Section titled “ロール(標準)(Role)”iDempiere 13 標準ウィンドウ(AD_Window_ID: 111)
メニュー: システム管理 ▸ 全般設定 ▸ セキュリティ管理 ▸ ロール(標準)
ロール
The Role Window allows you to define the different roles that users of this system will have. Roles control access to windows, tasks, reports, etc. For a tenant an Administrator and User role are predefined. You may add additional roles to control access for specific functionality or data. You can add users to the role. Note that access information is cached and requires re-login or reset of cache.
| # | タブ | テーブル | 階層 | 説明 |
|---|---|---|---|---|
| 10 | ロール | AD_Role | 0 | ロール |
| 20 | 組織アクセス | AD_Role_OrgAccess | 1 | Maintain Role Org Access |
| 30 | ユーザー割当 | AD_User_Roles | 1 | Users with this Role |
| 40 | ウィンドウアクセス | AD_Window_Access | 1 | Window Access |
| 50 | プロセスアクセス | AD_Process_Access | 1 | Process Access |
| 60 | フォームアクセス | AD_Form_Access | 1 | Form Access |
| 65 | 情報検索ウィンドウアクセス | AD_InfoWindow_Access | 1 | |
| 70 | ワークフローアクセス | AD_Workflow_Access | 1 | Workflow Access |
| 80 | タスクアクセス | AD_Task_Access | 1 | Task Access |
| 90 | 伝票アクションアクセス | AD_Document_Action_Access | 1 | Define access to document type / document action / role combinations. |
| 100 | 包含ロール | AD_Role_Included | 1 | |
| 130 | 伝票状態アクセス | PA_DocumentStatusAccess | 1 |
ロール タブのフィールド
Section titled “ロール タブのフィールド”Define the role and add the organizations the role has access to. You can give users access to this role and modify the access of this role to windows, forms, processes and reports as well as tasks.
If the Role User Level is Manual, the assigned access rights are not automatically updated (e.g. if a role has a restricted number of Windows/Processes it can access). You need to add organizational access unless the role has access to all organizations. The SuperUser and the user creating a new role are assigned to the role automatically.
If you select an Organization Tree, the user has access to the leaves of summary organizations.
Note: You cannot change the System Administrator role.
| フィールド | カラム | 型 | 必須 | 説明 |
|---|---|---|---|---|
| クライアント | AD_Client_ID | Table Direct | ✔ | Tenant for this installation. |
| 組織 | AD_Org_ID | Table Direct | ✔ | Organizational entity within tenant |
| 名称 | Name | String | ✔ | Alphanumeric identifier of the entity |
| 説明 | Description | String | Optional short description of the record | |
| ユーザーレベル | UserLevel | List | System Tenant Organization | |
| マニュアル | IsManual | Yes-No | ✔ | This is a manual process |
| 有効 | IsActive | Yes-No | ✔ | The record is active in the system |
| メニューを自動で開く | IsMenuAutoExpand | Yes-No | ✔ | If ticked, the menu is automatically expanded |
| 変更ログ | IsChangeLog | Yes-No | ✔ | Maintain a log of changes |
| 通貨 | C_Currency_ID | Table Direct | The Currency for this record | |
| 承認限度額 | AmtApproval | Amount | The approval amount limit for this role | |
| 累計承認限度額 | AmtApprovalAccum | Amount | The approval amount limit for this role accumulated on a period | |
| 累計承認限度額の期間(日数) | DaysApprovalAccum | Integer | The days approval indicates the days to take into account to verify the accumulated approval amount. | |
| 自己作成伝票承認 | IsCanApproveOwnDoc | Yes-No | ✔ | Users with this role can approve their own documents |
| ロールタイプ | RoleType | List | ||
| 初期値設定レベル | PreferenceType | List | ✔ | Determines what preferences the user can set |
| メニューツリー | AD_Tree_Menu_ID | Table | Tree of the menu | |
| 上級対象アクセス許可 | IsAccessAdvanced | Yes-No | 上級対象アクセス(タブ/フィールド/ツールバーボタン(Advanced Button)) | |
| 全組織アクセス許可 | IsAccessAllOrgs | Yes-No | ✔ | Access all Organizations (no org access control) of the tenant |
| ユーザー組織アクセス優先 | IsUseUserOrgAccess | Yes-No | ✔ | Use Org Access defined by user instead of Role Org Access |
| レコードアクセス権限設定許可 | IsPersonalLock | Yes-No | ✔ | Allow users with role to lock access to personal records |
| 制限されているレコードへのアクセス許可 | IsPersonalAccess | Yes-No | ✔ | Allow access to all personal records |
| レポート閲覧許可 | IsCanReport | Yes-No | ✔ | Users with this role can create reports |
| エクスポート許可 | IsCanExport | Yes-No | ✔ | Users with this role can export data |
| Client Administrator | IsClientAdministrator | Yes-No | ✔ | This role is a client administrator |
| 会計情報表示許可 | IsShowAcct | Yes-No | ✔ | Users with this role can see accounting information |
| 限度価格更新許可 | OverwritePriceLimit | Yes-No | ✔ | Overwrite Price Limit if the Price List enforces the Price Limit |
| クエリレコード確認 | ConfirmQueryRecords | Integer | ✔ | Require Confirmation if more records will be returned by the query (If not defined 500) |
| 最大クエリレコード | MaxQueryRecords | Integer | ✔ | If defined, you cannot query more records as defined - the query criteria needs to be changed to query less records |
| 組織ツリー | AD_Tree_Org_ID | Table | Trees are used for (financial) reporting and security access (via role) | |
| 会計情報表示許可 | Allow_Info_Account | Yes-No | ✔ | |
| スケジュール情報表示許可 | Allow_Info_Schedule | Yes-No | ✔ | |
| 品目情報表示許可 | Allow_Info_Product | Yes-No | ✔ | |
| 取引先情報表示許可 | Allow_Info_BPartner | Yes-No | ✔ | |
| 受発注情報表示許可 | Allow_Info_Order | Yes-No | ✔ | |
| 請求情報表示許可 | Allow_Info_Invoice | Yes-No | ✔ | |
| 入出荷情報表示許可 | Allow_Info_InOut | Yes-No | ✔ | |
| 入金支払情報表示許可 | Allow_Info_Payment | Yes-No | ✔ | |
| 資産情報表示許可 | Allow_Info_Asset | Yes-No | ✔ | |
| リソース情報表示許可 | Allow_Info_Resource | Yes-No | ✔ | |
| Predefined Context Variables | PredefinedContextVariables | String | Predefined context variables to inject when opening a menu entry or a window |
組織アクセス タブのフィールド
Section titled “組織アクセス タブのフィールド”Add the tenant and organizations the user has access to. Entries here are ignored, if User Org Access is selected or the role has access to all roles.
Note that access information is cached and requires re-login or reset of cache.
| フィールド | カラム | 型 | 必須 | 説明 |
|---|---|---|---|---|
| クライアント | AD_Client_ID | Table Direct | ✔ | Tenant for this installation. |
| 組織 | AD_Org_ID | Table Direct | ✔ | Organizational entity within tenant |
| ロール | AD_Role_ID | Table Direct | ✔ | Responsibility Role |
| 有効 | IsActive | Yes-No | ✔ | The record is active in the system |
| 読取専用 | IsReadOnly | Yes-No | ✔ | Field is read only |
ユーザー割当 タブのフィールド
Section titled “ユーザー割当 タブのフィールド”The User Assignment Tab displays Users who have been defined for this Role.
| フィールド | カラム | 型 | 必須 | 説明 |
|---|---|---|---|---|
| クライアント | AD_Client_ID | Table Direct | ✔ | Tenant for this installation. |
| 組織 | AD_Org_ID | Table Direct | ✔ | Organizational entity within tenant |
| ロール | AD_Role_ID | Search | ✔ | Responsibility Role |
| ユーザー | AD_User_ID | Search | ✔ | User within the system - Internal or Business Partner Contact |
| 有効 | IsActive | Yes-No | ✔ | The record is active in the system |
ウィンドウアクセス タブのフィールド
Section titled “ウィンドウアクセス タブのフィールド”The Window Access Tab defines the Windows and type of access that this Role is granted.
| フィールド | カラム | 型 | 必須 | 説明 |
|---|---|---|---|---|
| クライアント | AD_Client_ID | Table Direct | ✔ | Tenant for this installation. |
| 組織 | AD_Org_ID | Table Direct | ✔ | Organizational entity within tenant |
| ロール | AD_Role_ID | Table Direct | ✔ | Responsibility Role |
| ウィンドウ | AD_Window_ID | Table Direct | ✔ | Data entry or display window |
| 有効 | IsActive | Yes-No | ✔ | The record is active in the system |
| 読み書き可能 | IsReadWrite | Yes-No | ✔ | Field is read / write |
プロセスアクセス タブのフィールド
Section titled “プロセスアクセス タブのフィールド”The Process Access Tab defines the Processes and type of access that this Role is granted.
| フィールド | カラム | 型 | 必須 | 説明 |
|---|---|---|---|---|
| クライアント | AD_Client_ID | Table Direct | ✔ | Tenant for this installation. |
| 組織 | AD_Org_ID | Table Direct | ✔ | Organizational entity within tenant |
| ロール | AD_Role_ID | Table Direct | ✔ | Responsibility Role |
| プロセス | AD_Process_ID | Table Direct | ✔ | Process or Report |
| 有効 | IsActive | Yes-No | ✔ | The record is active in the system |
| 読み書き可能 | IsReadWrite | Yes-No | ✔ | Field is read / write |
フォームアクセス タブのフィールド
Section titled “フォームアクセス タブのフィールド”The Form Access Tab defines the Forms and type of access that this Role is granted.
| フィールド | カラム | 型 | 必須 | 説明 |
|---|---|---|---|---|
| クライアント | AD_Client_ID | Table Direct | ✔ | Tenant for this installation. |
| 組織 | AD_Org_ID | Table Direct | ✔ | Organizational entity within tenant |
| ロール | AD_Role_ID | Table Direct | ✔ | Responsibility Role |
| フォーム | AD_Form_ID | Table Direct | ✔ | Special Form |
| 有効 | IsActive | Yes-No | ✔ | The record is active in the system |
| 読み書き可能 | IsReadWrite | Yes-No | ✔ | Field is read / write |
情報検索ウィンドウアクセス タブのフィールド
Section titled “情報検索ウィンドウアクセス タブのフィールド”| フィールド | カラム | 型 | 必須 | 説明 |
|---|---|---|---|---|
| クライアント | AD_Client_ID | Table Direct | ✔ | Tenant for this installation. |
| 組織 | AD_Org_ID | Table Direct | ✔ | Organizational entity within tenant |
| ロール | AD_Role_ID | Table Direct | ✔ | Responsibility Role |
| 検索ウィンドウ | AD_InfoWindow_ID | Table Direct | ✔ | Info and search/select Window |
| 有効 | IsActive | Yes-No | ✔ | The record is active in the system |
ワークフローアクセス タブのフィールド
Section titled “ワークフローアクセス タブのフィールド”The Workflow Access Tab defines the Workflows and type of access that this Role is granted.
| フィールド | カラム | 型 | 必須 | 説明 |
|---|---|---|---|---|
| クライアント | AD_Client_ID | Table Direct | ✔ | Tenant for this installation. |
| 組織 | AD_Org_ID | Table Direct | ✔ | Organizational entity within tenant |
| ロール | AD_Role_ID | Table Direct | ✔ | Responsibility Role |
| ワークフロー | AD_Workflow_ID | Table Direct | ✔ | Workflow or combination of tasks |
| 有効 | IsActive | Yes-No | ✔ | The record is active in the system |
| 読み書き可能 | IsReadWrite | Yes-No | ✔ | Field is read / write |
タスクアクセス タブのフィールド
Section titled “タスクアクセス タブのフィールド”The Task Access Tab defines the Task and type of access that this Role is granted.
| フィールド | カラム | 型 | 必須 | 説明 |
|---|---|---|---|---|
| クライアント | AD_Client_ID | Table Direct | ✔ | Tenant for this installation. |
| 組織 | AD_Org_ID | Table Direct | ✔ | Organizational entity within tenant |
| ロール | AD_Role_ID | Table Direct | ✔ | Responsibility Role |
| OS タスク | AD_Task_ID | Table Direct | ✔ | Operation System Task |
| 有効 | IsActive | Yes-No | ✔ | The record is active in the system |
| 読み書き可能 | IsReadWrite | Yes-No | ✔ | Field is read / write |
伝票アクションアクセス タブのフィールド
Section titled “伝票アクションアクセス タブのフィールド”Define access to document type / document action / role combinations.
| フィールド | カラム | 型 | 必須 | 説明 |
|---|---|---|---|---|
| クライアント | AD_Client_ID | Table Direct | ✔ | Tenant for this installation. |
| 組織 | AD_Org_ID | Table Direct | ✔ | Organizational entity within tenant |
| ロール | AD_Role_ID | Table Direct | ✔ | Responsibility Role |
| 伝票タイプ | C_DocType_ID | Table Direct | ✔ | Document type or rules |
| リファレンスリスト | AD_Ref_List_ID | Table Direct | ✔ | Reference List based on Table |
| 有効 | IsActive | Yes-No | ✔ | The record is active in the system |
包含ロール タブのフィールド
Section titled “包含ロール タブのフィールド”| フィールド | カラム | 型 | 必須 | 説明 |
|---|---|---|---|---|
| シーケンスNo | SeqNo | Integer | ✔ | Method of ordering records; lowest number comes first |
| 有効 | IsActive | Yes-No | ✔ | The record is active in the system |
| ロール | AD_Role_ID | Search | ✔ | Responsibility Role |
| 包含ロール | Included_Role_ID | Table | ✔ |
伝票状態アクセス タブのフィールド
Section titled “伝票状態アクセス タブのフィールド”| フィールド | カラム | 型 | 必須 | 説明 |
|---|---|---|---|---|
| クライアント | AD_Client_ID | Table Direct | ✔ | Tenant for this installation. |
| 組織 | AD_Org_ID | Search | ✔ | Organizational entity within tenant |
| ロール | AD_Role_ID | Table Direct | Responsibility Role | |
| ユーザー | AD_User_ID | Search | User within the system - Internal or Business Partner Contact | |
| 伝票状態 | PA_DocumentStatus_ID | Table Direct | ||
| 有効 | IsActive | Yes-No | ✔ | The record is active in the system |