DEPLOYMENT & ADMINISTRATION
How do I set user permissions by department?
Apus manages access with role-based access control (RBAC). This article shows how to create roles, assign them by department and control data scope.
The permission model
Apus uses role-based access control: each role is a set of permissions across modules and data scope. Users get permissions through roles, not individual grants.
Create a role
- Go to Admin → Roles & permissions.
- Create a new role and select the allowed modules.
- Limit data scope by company, branch or department.
- Save and assign the role to users.
Assign by department
Assigning roles by department lets users see only the data within their scope. When someone changes department, you simply change their role and access updates automatically.
Review & audit
Every permission change is recorded in the audit log. You can review who has what access and when it changed.
TIP
Start from least privilege: grant exactly what's needed, then expand on demand.
Was this article helpful?