Creating a Cognos group or role
You can add entries from multiple namespaces, created both in the authentication providers and in IBM® Cognos® software, as members of Cognos groups. You can also create empty groups that do not have any members.
The members of Cognos groups can be users or other groups. The members of Cognos roles can be users, groups, or other roles.
If you plan to create groups or roles that reference entries from multiple namespaces, you must log on to each of those namespaces before you start your task. Otherwise, you will not have full administrative rights for the entries you want to reference.
We recommend that you use the Cognos groups and roles when you set up access permissions to entries in IBM Cognos software because it simplifies the process of deployment. For more information, see Security and Deployment.
When you delete a Cognos group or role, users' access permissions based on it are no longer active. You cannot restore access permissions by creating a group or role with the same name.
To administer users, groups, and roles, you must have execute permissions for the Users, Groups, and Roles secured feature, and traverse permissions for the Administration secured function. For more information, see User capabilities.