Customise user privileges
You need the admin rights to use this feature.
In KAIZEN, privileges represent the most detailed level of access control within the Identity and Access Management (IAM) framework. They serve as specific, individual permissions that control precisely which actions a user can perform and which system resources they are allowed to interact with.
- A role can contain multiple privileges that define the permitted operations.
- Privileges enable fine-grained control over application features and functionality.
- Privileges can be mapped to roles, endpoints, menus, and pages. Users assigned to roles with the corresponding privileges are granted access to the associated menus, pages, and endpoints accordingly.
- Admins can create and manage privileges as required, assign them to roles and system resources, and export or import privilege configurations for backup or migration purposes.
Manage the privileges
To manage the privileges, perform the following:
-
In the KAIZEN studio console, on the left panel, click Access Controller > Privileges.
The Access Controller/ Privileges page displays.
-
From here, you can create new privileges, import or export privileges, import application privileges and so on. Each row in the table provides the following actions under the Actions column:
- View: Opens the privilege details in read-only mode.
- Edit: Opens the privilege details for editing.
- More: Expands a dropdown with additional actions: Deactivate and Export.
Create a custom privilege
-
In Access Controller/ Privileges, click Create.
-
In the Create Privilege window, enter the privilege information in these fields and click Save.
Search privileges
To search for privileges, perform the following:
-
In Access Controller/ Privileges, enter or select the search criteria.
Field Description User Domain Displays the user domain for the current session. Privilege Code Search for privileges by their privilege code. Privilege Name Search for privileges by their privilege name. Subject Type Filter privileges by subject type. Status Filter privileges by their status. Remarks Search for privileges by remarks or notes. -
Click Search to find the result.
Deactivate a privilege
To deactivate a privilege, perform the following:
-
Click More on the same row as the privilege, then click Deactivate.
-
In the confirmation dialog, click OK.
A success message will confirm that the privilege has been deactivated. The privilege status will change from Active to Inactive.
After the deactivation, you have the option to reactivate it by clicking More > Activate.
Export privileges
To export a privilege, perform the following:
-
In Access Controller/ Privileges, select the privilege you want to export.
-
Open the Export function using one of the following methods:
- Click Export at the top of the page.
- Click More on the same row as the privilege, then click Export.
-
The Confirm window pops up, asking for confirmation. Click OK.
An
XMLfile containing the selected privilege information will be downloaded in your browser.
Export all privileges
To export all privileges, perform the following:
-
In Access Controller/ Privileges, click Export All.
-
The Confirm window pops up, asking for confirmation. Click OK.
An
XMLfile containing the information of all privileges will be downloaded in your browser.
Import privileges
To import privileges from an existing XML file, perform the following:
-
In Access Controller/ Privileges, click Import. The File Explorer window opens.
-
Browse to the
XMLfile that contains the privilege information. Click Open.A message will pop up, showing the import is successful.
Import application privileges
To obtain an XML file containing privilege information at the application level, refer to Export a privilege.
To import application privileges from the XML file, perform the following:
-
In Access Controller/ Privileges, click Import Application Privileges. The File Explorer window opens.
-
Browse to the
XMLfile that contains the application-level privilege information. Click Open. -
The Import Application Privileges window opens. Select Application as the Subject Type.
-
Click Import. A message will pop up, showing the import is successful.
Last updated on 21 Sep 2026