Staff Access and Administrative Role

In SIX ERP, user roles play a crucial part in ensuring secure and efficient system use. It's essential to understand the distinction between Administrative Users and ACL-Controlled Staff Members to maintain the integrity and security of your ERP environment. This article clarifies the differences and emphasizes why functional users should operate strictly under Access Control List (ACL) permissions rather than as administrative users.

Administrative Users

An Administrative User has unrestricted access across the SIX ERP system, including core configuration settings, user management, and system-wide controls. This level of access is intended only for users responsible for configuring and maintaining the system rather than day-to-day operational tasks. Key aspects of an administrative user role include:

Administrators should limit their actions strictly to system maintenance tasks. Allowing any user who performs daily operations to operate as an admin risks unintentional modifications to critical settings, potentially leading to data breaches, workflow disruptions, or misconfigurations that affect the entire organization.

ACL-Controlled Staff Members

An ACL-Controlled Staff Member is a user role governed by the Access Control List (ACL) framework. This role grants access only to specific functions, data, and tools necessary for an employee’s job, ensuring a secure and focused operational environment. Key aspects of ACL-controlled staff members include:

Using ACL-controlled roles for staff members aligns their access strictly with their responsibilities, preserving system integrity while protecting sensitive data and settings.

Why Functional Users Should Not Use Administrative Accounts

Allowing functional users to operate as administrative users creates a substantial risk to the SIX ERP environment. When users who perform daily tasks have administrative access, they can unintentionally change core settings, create security vulnerabilities, and disrupt workflows critical to organizational operations. By adhering to the principle of least privilege, SIX ERP ensures:

In summary, administrative accounts are for system setup and maintenance only, while ACL-controlled accounts are tailored for operational tasks. By keeping these roles separate, SIX ERP maximizes security, enhances system stability, and reduces risk, empowering staff to perform their roles safely and effectively.


Related Articles: