Skip to content

Standard directory services group permission file

When an application doesn't have permission files that could be used to import data into Permission Assist, there are two file format options that may be used to pull in data: the Standard Directory Services Group File and the Standardized Permissions File.

The Standard Directory Services Group Permissions file is ideal when permissions within the application are based on directory services group participation. If users' permissions are not based on your directory services application (e.g., Active Directory), we recommend using the Standardized Permissions File connector.

The Standard Directory Services Group File can be imported in the following formats: xlsx, xls, and csv.

If you'd like a sample file to start the process, select a link below:

File specifications

Field Required/Optional Description
Group Required Contains the Active Directory group you'd like to review. This column may include a group name or a user SAMAccount name.
Heading Optional Used to create headings for related sections and/or sets of permissions.
Section Required only if the Permission column is absent; otherwise, optional Used to describe a set of defined privileges that the user has access to such as a role or template within the application. This column is required if a Permission column doesn't exist.
Permission Required only if the Section column is absent; otherwise, optional Defines the specific point of access/privilege the user has within the application. This column is required if a Section column doesn't exist.
Access Required Indicates whether the user has access to the section and/or permission. The data in this column can support flexibility in values, but officially only supports the values Y, N, and blank. Y: User has access to this role/privilege. N: User does not have access to this role/privilege. Blank: The access to this role/privilege is undefined, which results in the same result as not declaring it at all.