Project Server 2016 权限模式

Project Server 从2013版开始,增加了sharepoint 模式,并默认使用sharepoint权限模式,设置中可以对比sharepoint权限模式(图一)和project server权限模式(图二)的显示区别:

可以使用命令修改两种模式:Set-SPPRojectPermissionMode -Url "http://sp2016-1/sites/pwa2" -Mode ProjectServer

Set-SPPRojectPermissionMode -Url "http://sp2016-1/sites/pwa2" -Mode SharePoint

Project online使用的project server 权限模式。

这两种权限模式差别如下:


Feature


SharePoint

permission mode


Project Server

permission mode


Unified security management through SharePoint Server


X

 

Permissions inheritance for PWA and Workspaces


X

 

Direct authorization against Active Directory security groups


X

 

Claims-based authorization


X


X


Manage authorization by role-based groups


X


X


Extensible and customizable


X


X


User delegation

 
X


Ability to secure work resources

 
X


Impersonation

 
X


Security filtering using the Resource Breakdown Structure

 
X


Custom Security Categories

 
X

SharePoint permissions mode creates SharePoint groups that directly correspond to the default security groups found in Project Server permission mode.

The following table describes the Project Server 2013 SharePoint groups and what user functionality they enable in Project Web App.


SharePoint group


Function


Administrators


Users have all global permissions as well as category permissions through the My Organization category. This allows them complete access to everything in Project Web App.


Portfolio Viewers


Users have permissions to view Project and Project Web App data. This group is intended for high-level users who need visibility into projects but are not themselves assigned project tasks.


Project Managers


Users have permissions to create and manage projects. This group is intended for project owners who assign tasks to resources.


Portfolio Managers


Users have assorted project-creation and team-building permissions. This group is intended for high-level managers of groups of projects.


Resource Managers


Users have most global and category-level resource permissions. This group is intended for users who manage and assign resources and edit resource data.


Team Leads


Users have limited permissions around task creation and status reports. This group is intended for persons in a lead capacity that do not have regular assignments on a project.


Team Members


Users have general permissions for using Project Web App, but limited project-level permissions. This group is intended to give everyone basic access to Project Web App.

When you add individual users to one of the SharePoint groups, that user is synchronized to Project Web App automatically. User synchronization runs on a SharePoint timer job, by default every ten minutes.

When you add Active Directory groups to one of the Project Server-specific SharePoint security groups, the users are not automatically added to the list of users in Project Web App. Each user is individually added to Project Web App the first time she or he accesses the Project Web App site.

Because users in Active Directory groups do not appear on the list of Project Web App resources until they have accessed the Project Web App site, we recommend that you configure Active Directory synchronization in Project Web App to prepopulate your resource list. This allows you to have a complete resource list and to assign work to resources before they have accessed the Project Web App site.

时间: 2024-07-31 22:07:07

Project Server 2016 权限模式的相关文章

在Windows Server 2016 Core模式下安装Windows Admin Center

之前给大家介绍了Windows Admin Center的功能和界面:http://blog.51cto.com/rdsrv/2103443 但安装Windows Admin Center是基于Windows Server 2016的图形化GUI安装的Windows Admin Center的,今天我主要给大家介绍在Windows Server 2016 Core模式下(没有GUI)安装Windows Admin Center,为什么要单独介绍在Core模式下安装Windows Admin Ce

project server 2016 新功能

1.多时间轴 2.资源容量规划 3.资源请求

SharePoint Server 2016 PWA(Project web app) 被变为只读模式

今天有同事反应了一个状况,我们SharePoint 2016里面集成的Project Web App(以下简称PWA)变成 read-only 只读模式了! 今天就给大家分享一下我的排查过程,供大家参考. 整个过程我一共使用了五种办法,结果最后一种才生效,但是这五种办法都是按照我们的惯性逻辑思路来排查的,大家可以依次看一下,我也不建议大家直接看最后的一种办法,因为你的问题不一定和我的问题一样,但是我觉得这五种办法中应该有你想要的. 问题的表现形式如下图 方法一: 有过SharePoint Ser

Windows server 2016 / Windows 10关于域管理员帐号权限不足的问题

今天在测试windows server 2016的域创建时,当安装结束之后,发现使用Administrator用户进行操作时,被提示了权限不足这个问题.于是我在百度上查找了一番之后,找到了解决方法. 打开 服务器管理器 ---- 工具----本地安全策略-----本地策略-----安全选项------用户帐户控制:用于内置管理员帐户的管理员批准模式 另外,发现windows server  2016 在安装完AD域之后,ip设定方面 DNS会自动更改为本地.由于我是根据windows serve

Project Server 2013新手入门 (二)为PWA用户分配权限

上一篇文章我们讲到怎么为project server 2013 的PWA网站添加用户,那么用户添加好了,我们怎么给这些用户设置相应的权限,来对应我们项目管理中不同的角色(项目经理,资源经理.员工.负责人等),以便他们在项目整个过程中行使的权利和责任体现在我们的Project Server PWA的项目管理中心. 为用户分配PWA的全局权限(关于这个全局权限,我会在以后的文章中介绍) 执行完以上步骤之后,我们将在Project Server 2013 "服务器设置"下管理用户. 1)返回

Project Server 2013新手入门 (三)检查用户的有效权限

上篇文章里讲的怎么给PWA的用户来设置权限,那我们把用户的权限分配好了,怎么知道我们分配的权限对不对呢,或者说怎么去查看一个用户在PWA中的权限呢.下面的内容我将介绍怎么操作. 当我们配置完应该去检查一下用户的有效权限,这样可一方便我们管理用户. 1.同样是在"管理用户"页面,选中我们要查看的用户名称,点击"检查有效权限". 注意:我们也可以点击"停用用户"来阻止离职员工或者部分员工对PWA的使用,此时用户状态显示为"非活动"

SQL Server 2016 行级别权限控制

原文:SQL Server 2016 行级别权限控制 背景 假如我们有关键数据存储在一个表里面,比如人员表中包含员工.部门和薪水信息.只允许用户访问各自部门的信息,但是不能访问其他部门.一般我们都是在程序端实现这个功能,而在sqlserver2016以后也可以直接在数据库端实现这个功能. 解决 安全已经是一个数据方面的核心问题,每一代的MS数据库都有关于安全方面的新功能,那么在Sql Server 2016,也有很多这方面的升级,比如'Row Level Security', 'Always E

在WinSrv 2016 Core模式下安装Exchange Server 2019预览版

之前的Exchange Server很多版本大家都很熟知,但每次安装Exchange Server都是必须安装在具备GUI图形化界面的Windows Server上的,很多人觉得Windows Server的GUI图形化很占资源并且容易导致人为的误操作而影响系统的稳定性,那么在未来发布的Exchange Server 2019版本中会是第一个支持在Windows Server Core模式下安装的Exchange Server,这样就大大提高了Windows Server对Exchange Se

SQL Server 2016 AlwaysOn 安装及配置介绍

SQL Server 2016  AlwaysOn 安装及配置介绍 Always On 可用性组功能是一个提供替代数据库镜像的企业级方案的高可用性和灾难恢复解决方案. SQL Server 2012 中引入了 Always On 可用性组功能,此功能可最大程度地提高一组用户数据库对企业的可用性. "可用性组" 针对一组离散的用户数据库(称为"可用性数据库" ,它们共同实现故障转移)支持故障转移环境. 一个可用性组支持一组读写主数据库以及一至八组对应的辅助数据库. (