Manage Permissions Ribbon Actions

This article explains how to use Manage Permissions ribbon to easily manage SharePoint permissions on the selected object. Permission management buttons are enabled only in live version of Permissions Explorer.

SPDocKit-Permissions-Explorer-Manage-Ribbon

Break Permission Inheritance Copies the parent permissions and then stops inheriting permissions. Any changes made to a parent site will not apply to the selected site in the future and vice verse.

  • Available On: sites(not the root ones), lists, list items that inherit permissions from the parent site
  • Scope: currently selected SharePoint object

Restore Permission Inheritance Delete all unique permissions and inherit permissions from the parent site.

  • Available On: sites(not the root ones), lists, list items that have the broken permissions
  • Scope: currently selected SharePoint object

Please note! Restoring permission inheritance on a subsite, will also restore the permission inheritance on lists and list items on that subsite.


Grant Permissions Allows you to assign permissions to a user or a group on a selected SharePoint object with unique permissions.
  • Scope: currently selected object, Site Collection in which the selected object is if granting permissions through SharePoint Group
  • Supported Principal selection: SharePoint user, Active Directory Group or SharePoint group
  • Assign permissions method: directly or through the SharePoint group
  • Please note! Adding a principal to a SharePoint group will grant the selected principal permissions across the entire site collection, wherever this SharePoint group has been granted permissions.

SPDocKit-Grant-Permissions

Create group Group Create a new SharePoint group on the selected SharePoint object with unique permissions.

  • Scope: Site Collection in which the selected object is
  • Supported owner selection: user, SharePoint group
  • Permission Selection: permission levels listed in this step depend on the selected site collection template. If you use site template other than team site template, different list of default SharePoint permission levels will be provided.

SPDocKit-Create-SharePoint-Group


Edit Permissions Modify assigned permission levels for a selected principal.
  • Scope: currently selected SharePoint object with unique permissions
  • Available On: SharePoint users, AD groups, SharePoint groups

SPDocKit-Edit-SharePoin-Permissions

Clone Permissions Source principal’s permissions will not be changed in any way by this wizard. Destination principals will lose all previously assigned permissions and acquire every directly given permission and SharePoint group memberships as the source principal.

  • Scope: currently selected SharePoint object with unique permissions
  • Available On: SharePoint user, Active Directory group
  • Destination principals selection: SharePoint user, Active Directory group

SPDocKit-Clone-SharePoint-Permissions

Transfer Permissions Source principal’s permissions will lose all previously directly assigned permissions and group memberships. Destination principals will lose all previously assigned permissions and acquire every directly given permission and SharePoint group memberships as the source principal.

  • Scope: currently selected SharePoint object with unique permissions
  • Available On: SharePoint user, Active Directory group
  • Destination principals selection: SharePoint user, Active Directory group

SPDocKit-Transfer-SharePoint-Permissions

Remove Permissions Remove all previously granted permissions from a selected user. User will still exist on this site collection but will no longer have any assigned permissions on this SharePoint object.

  • Scope: currently selected SharePoint object with unique permissions
  • Available On: SharePoint user, Active Directory group, SharePoint group

Move to Group Remove directly assigned permissions from the selected user and add him to a SharePoint group. Selected user will now inherit permissions through this group membership.

  • Scope: currently selected SharePoint object with unique permissions
  • Available On: SharePoint user, Active Directory group
  • Please note! Adding a principal to a SharePoint group will grant the selected principal permissions across the entire site collection, wherever this SharePoint group has been granted permissions.

SPDocKit-Move-to-Group

Copy to group Add a selected principal to a SharePoint group, but keep his directly granted permissions on this SharePoint object also. Selected user will now have both directly given permissions gained through this group membership.

  • Scope: currently selected SharePoint object with unique permissions
  • Available On: SharePoint user, Active Directory group
  • Please note! Adding a principal to a SharePoint group will grant the selected principal permissions across the entire site collection, wherever this SharePoint group has been granted permissions.

SPDocKit-Copy-to-Group


Delete User Delete the selected principal from the entire Site Collection. User or Active Directory group will no longer have any assigned permissions and will be deleted from the site collection.
  • Scope: Site Collection in which currently focused SharePoint object is
  • Available On: SharePoint user, Active Directory group

Delete Group Delete the selected SharePoint group from the entire Site Collection. This SharePoint group will no longer have any assigned permissions and will be deleted from the site collection.

  • Scope: Site Collection in which currently focused SharePoint object is
  • Available On: SharePoint group

Remove Users from Groups Remove the selected user from SharePoint group. User will lose all permissions gained through this group membership.

  • Scope: Site Collection in which currently focused SharePoint object is
  • Available On: SharePoint group members- SharePoint users, Active Directory groups

Permission Levels Add, remove or modify permission levels on the selected site collection or subsite. Click on the desired listed permission level, to edit its currently configured base permissions or use Add Permission Level button to create new permission level.
  • Scope: currently selected SharePoint object and his hierarchical children
  • Available On: SharePoint objects that do not inherit permission levels from parent
  • Please note! Base permissions are connected, so if for example, you want to include Manage Lists base permission into the permission level, the View Items, View Pages and Open base permissions are also needed. User do not have to worry about these requirements, SPDocKit will take care of them.

SPDocKit-Permission-Levels

Site Collection Administrators Modify current set of administrators. Change primary and secondary site collection administrators or entire site collection administrators group.

  • Scope: Site Collection in which currently focused SharePoint object is
  • Primary administrator principal selection: SharePoint user
  • Secondary administrator principal selection: SharePoint user
  • Administrators group principal selection: SharePoint users, Active Directory groups (except in SharePoint 2007)

SPDocKit-Site-Collection-Administrators

Some of these actions have the Preview step to make sure that the pending changes will do exactly what you wanted and have specified in previous steps of these wizard. The last step shows user the changes that were made. If some errors have occurred they will be displayed here. It is possible to save this log to disk as a .txt file using Save Log button.

In addition, you can track and explore all permission changes made by SPDocKit using SPDocPerm event log.