Skip to main content
Share / Export

Set Form, Report, and Attachment Permissions

Use Role & Duty Builder to set what a selected role or duty can do for Vista forms, reports, and attachment types—and to attach duties to a role.

Where: Mission Control → D.A.M. Security ManagerRole & Duty Builder
Route: /missioncontrol/security/role-duty-builder

Prerequisite: roles and duties already exist. See Build roles and duties.

To change many roles or duties at once, use Edit permissions across many roles or duties instead.


Start an editing session

  1. In the left Security list, select a role or duty.
  2. The main panel shows tabs for that subject. Empty state until then: No Role or Duty Selected.
  3. Edit permissions in the grid (updates go to a working session).
  4. Click Save Changes to keep them, or Cancel Changes to discard.

Save Changes is enabled only when the session has unsaved changes. Selecting a different role or duty cancels the previous session—save first if you care about those edits.


Tabs

TabAvailable whenWhat you edit
FormsRole or duty selectedAccess, Add / Update / Delete Records, form-level Attachments
ReportsRole or duty selectedAccess only
AttachmentsRole or duty selectedAccess to attachment types
DutiesRole selectedWhich duties are assigned to this role
RolesDuty selectedWhich roles include this duty

The selected subject appears as a badge (for example Role: … or Duty: …).


Forms permissions

On Forms, each row is a Vista form (Module, Form Code, Title, Form Type).

ColumnHow to edit
AccessClick the shield icon: Allowed ↔ Not Allowed
Add Records / Update Records / Delete RecordsClick the icon to toggle Yes / No (only when Access is Allowed)
AttachmentsShown only when the form allows attachments. Cycle A / E / D (see below)

What happens when you turn Access on or off

  • Allowed (non-restricted form types): Add / Update / Delete default to Yes; form Attachments default to Add/Edit/Delete when attachments are supported.
  • Not Allowed: Add / Update / Delete set to No; form Attachments set to View Only when supported.
  • Add / Update / Delete stay locked while Access is Not Allowed.

Restricted form types

For these form types, Add / Update / Delete stay No and cannot be toggled even when Access is Allowed:

  • Processing
  • Batch Processing
  • Processing With Batch
  • URL

Access can still be Allowed or Not Allowed.

Form attachment levels (A / E / D)

Click the paperclip or the letter chip to cycle:

LettersMeaning
(none lit)View Only
AAdd
A EAdd/Edit
A E DAdd/Edit/Delete

If Access is Not Allowed, the Attachments control is inactive and shows View Only.


Reports and attachment types

  • Reports: toggle Access Allowed / Not Allowed per report.
  • Attachments (attachment-type catalog): toggle Access Allowed / Not Allowed per attachment type.

These tabs do not have Add / Update / Delete columns.


Filter, then bulk-apply

Use the filter bar above the grid:

  • Search
  • Modules (opens Select Modules)
  • Access, and on Forms: Add Records, Update Records, Delete Records, Attachments, Form Type
  • On Reports: Report Type
  • Clear Filters when filters are active

Apply To filtered rows

  1. Set filters so the grid shows only the rows you want to change.
  2. Click Apply To... (opens Apply To Filtered Rows).
  3. Under Apply To, choose which scopes to update: Forms, Reports, Attachments.
  4. Optionally enable Include Company Parameters or Include Purge under Admin Objects.
  5. Under Permissions, set Access, Add Records, Update Records, Delete Records, and/or Attachments. Use No Change to leave a field alone.
  6. Click Apply.

Apply To uses the currently filtered row IDs for the scopes you enable. Choosing Access = Allowed pre-fills Add/Update/Delete to Yes and Attachments to Add/Edit/Delete; Not Allowed pre-fills the opposite defaults. You can still override those before Apply.

Still click Save Changes after Apply To when you want the working session committed.


Assign duties to a role

With a role selected:

  1. Open the Duties tab.
  2. Toggle Selected (shield icon) to assign or unassign a duty.
  3. Optional filters: Search, Modules, Type (Standard / Custom), Selected.
  4. Use the eye icon under Permissions (View permissions) to preview that duty’s Forms / Reports / Attachments without leaving the role.

Duty permissions stack onto the role when the duty is selected. Role-level custom security on Forms / Reports / Attachments still applies for that role.

With a duty selected, the Roles tab is the reverse view: toggle which roles include this duty.


Review before export

Optional: open Role & Duty Summary to check allowed vs total coverage by module (see the workflow hub).

When permissions look right, push them with Export and sync DAM security to Vista.