Jan 22 2024 08:45 PM
Hi all,
Currently I need to create simple filling tools using Doc Library in SharePoint Site
Already create root/main folder named "GA" and "HR" like screenshot below :
Then create group of user (Admin, Manager, Visitor) like screenshot below :
Admin Roles : People who can upload file, manage/edit some attribute in file uploaded, manage user permission (add & remove person in each user group)
Manager Roles : People who can only view and download files
Visitor Roles : People who can only view files and cannot download files
Current (Default) Permission Levels :
How we can manage and assign permission for each group?
Especially for Admin Group, since they can manage permission (add/remove person) who can access the file. Is it possible without assign "Full Control" in Admin Group role?
Looking feedback from this group member or community?
Thank you
Warm regards,
Jan 23 2024 02:45 AM
Hello @priyo182
you can change the permission level for each group on permission page. Here as example in site permission:
Here are more about permisson levels: https://learn.microsoft.com/en-us/sharepoint/understanding-permission-levels?WT.mc_id=DX-MVP-5004845
Best, Dave
Jan 28 2024 07:25 PM
Hi @DaveMehr365 ,
For Manager and Visitor roles, i have copy permission level from "Read" then customize it into 2 new permission level like screenshot below.
But for Admin Roles which they need to manage access for their internal team and upload/manage files in it, i still have difficulties between customize "Contribute" level or "Full Control" level.
Which permission level that i can copy and custom then assign to user?
So, Admin user can manage files without interfere access outside of their team.
Looking any advise from this community
Thank you
Warm regards,
Jan 29 2024 08:52 AM - edited Jan 29 2024 08:53 AM
@priyo182 I think you will have to grant unique permissions at "Folder" level.
Try this:
Please click Mark as Best Response & Like if my post helped you to solve your issue. This will help others to find the correct solution easily. It also closes the item. If the post was useful in other ways, please consider giving it Like.
Jan 30 2024 05:23 PM
Hi @ganeshsanap , thank you for your advise.
Yes, i already create some folder named each department.
Then grant unique permissions at "Folder" level.
So, each PIC cannot manage differ folder
New Permission Name as mentioned above (View with Download and View without Download) was copied from "Read" permission type with some custom.
For Admin roles,, is it possible if we copy permission "Full Control" then custom (check/uncheck) option on it? So, PIC admin can manage access (add/remove user) and upload/manage files in each folder
Kindly advise
Thank you
Jan 31 2024 12:11 AM
Yes, you should assign Full Control permissions to admin groups and add them in folder permissions so that they manage permissions for the folders (add/remove other users) as well as upload files in the folder.
You will have to add admin group on all the folders permissions.
Please click Mark as Best Response & Like if my post helped you to solve your issue. This will help others to find the correct solution easily. It also closes the item. If the post was useful in other ways, please consider giving it Like.