Skip to main content
Share / Export

D.A.M. Security Manager Workflow

Use this page as the map for D.A.M. Security Manager in Mission Control. It tells you which screen to open for each job, in what order, and which detailed guide to follow next.

Audience: Vista security administrators configuring DAM in Mission Control.

Where: Mission Control → D.A.M. Security Manager


What each area owns

DAM splits Vista security work into four domains. Configure each domain in Mission Control, then push it with Download SQL or Run Sync from Security Exports & Syncs.

DomainWhat you defineWhere you configure itExport / sync section
Role & duty securityRoles, duties, Forms / Reports / Attachments permissions, role↔duty linksRole & Duty Builder, Role & Duty MatrixRole & Duty Security
User rolesWhich users belong to which rolesUser Setup, then User RolesUser Roles
Company accessWhich companies each user can accessCompany Setup, then Company AccessCompany Access
PR group accessWhich payroll groups each user can accessPR Group Setup, then PR Group AccessPR Group Access

These domains are related but independent. Assigning a user to a role does not grant company or PR group access. Granting company access does not change form permissions.


Do the work in this order the first time you stand up or rework DAM for a team:

  1. Build roles and duties — create or import roles/duties and set security groups.
  2. Set permissions — Forms, Reports, Attachments (and duty assignments on roles) in Builder or Matrix.
  3. Review coverage (optional) — check module totals in Role & Duty Summary.
  4. Load users — maintain the DAM user list in User Setup.
  5. Assign user roles — toggle users onto roles in User Roles.
  6. Load companies → assign company access.
  7. Load PR groups → assign PR group access.
  8. Export or syncSecurity Exports & Syncs for each domain you changed.

You can skip company or PR group work if your team does not use those access models. You should not skip export/sync if you need Viewpoint to match Mission Control.


Mission Control page map

Nav itemRouteUse it to…
Role & Duty Builder/missioncontrol/security/role-duty-builderWork one role or duty at a time. Session-based edits with Save Changes / Cancel Changes.
Role & Duty Matrix/missioncontrol/security/role-duty-matrixEdit the same permissions across many roles or duties at once. Changes save immediately.
Role & Duty Summary/missioncontrol/security/role-duty-summaryRead-only review: allowed vs total Forms / Reports / Attach by module.
User Setup/missioncontrol/security/user-setupAdd, import, refresh, or delete DAM users (VPUserName).
User Roles/missioncontrol/security/user-rolesAssign users to roles.
Company Setup/missioncontrol/security/company-setupMaintain the company catalog used by company access.
Company Access/missioncontrol/security/company-accessAssign which companies each user can access.
PR Group Setup/missioncontrol/security/pr-group-setupMaintain the PR group catalog.
PR Group Access/missioncontrol/security/pr-group-accessAssign which PR groups each user can access.
Security Exports & Syncs/missioncontrol/security/export-syncDownload SQL and/or Run Sync for the four domains above.

Builder vs Matrix

Role & Duty BuilderRole & Duty Matrix
Best forCreating/importing roles and duties; deep edits on one subjectComparing and changing many roles or duties side by side
Save modelWorking session → Save Changes or Cancel ChangesImmediate save on toggle
Bulk editsApply To... on the filtered rows for the selected role/dutyBulk column + Apply To... across visible subjects

Use Builder when you are defining the catalog. Use Matrix when you already have roles/duties and need cross-role permission work.


Review coverage in Summary

After you change permissions, open Role & Duty Summary to spot gaps before you export.

  • Switch between Roles and Duties.
  • Filter by search, modules, or subject.
  • Read cells as allowed/total for Forms, Reports, and Attach per module.

Summary does not edit security. If a total looks wrong, fix it in Builder or Matrix, then return.


Catalogs vs assignment matrices

Setup pages and assignment pages look similar on purpose. Treat them as two steps:

StepPagesJob
CatalogUser Setup, Company Setup, PR Group SetupAdd / Import / Refresh / Delete the rows that appear as people or columns later
AssignmentUser Roles, Company Access, PR Group AccessToggle access between users and roles / companies / PR groups

Important: On User Setup, Refresh Users with Replace users can wipe existing user-role and company assignments. Prefer non-destructive refresh unless you intend a full rebuild.

Refresh vs Run Sync: Setup-page Refresh pulls catalog data into DAM from Vista configs/cache. Run Sync on Security Exports & Syncs writes DAM security assignments into Viewpoint through Azure Bridge. They are not the same action.


Export and sync last

When Mission Control matches the security you want:

  1. Open Security Exports & Syncs.
  2. Choose the section for the domain you changed (Role & Duty Security, User Roles, Company Access, or PR Group Access).
  3. Select what to include (roles/scopes, companies, or PR groups).
  4. Use Backup Tables when you want backup objects in the generated SQL.
  5. Download SQL to get Viewpoint SQL, or Run Sync to apply through Azure Bridge.

Configure first. Export/sync second. Do not treat the export page as the place to design roles or assignments.


Guides in this set

GuideStatus
Build roles and dutiesDrafted
Set form, report, and attachment permissionsDrafted
Edit permissions across many roles or dutiesDrafted
Maintain DAM usersDrafted
Assign users to rolesDrafted
Assign company and PR group accessDrafted
Export and sync DAM security to VistaDrafted

Start with the Builder guides if you are defining security from scratch. Start with export/sync only if the Mission Control configuration is already correct and you need to push it to Viewpoint.