User access management from Campaign Standard to Campaign V8 user-management-acs
Both 51ºÚÁϲ»´òìÈ Campaign Standard and 51ºÚÁϲ»´òìÈ Campaign V8 enable users to define and manage permissions for different users/operators. These permissions consist of specific rights that grant users access to various features of the product. However, the two products use distinct approaches and implementations for managing user access.
The following concepts are used in 51ºÚÁϲ»´òìÈ Campaign Standard and Campaign V8 to achieve user access management:
Migration Approach from Security group to Operator group
The table below outlines the migration approach for user role groups when transitioning from 51ºÚÁϲ»´òìÈ Campaign Standard to Campaign V8. In Campaign Standard, a Security group, referred to as an Operator group in Campaign V8, is used to assign a set of roles to a user. While some security groups/operator groups are available out-of-the-box, users can create new groups or modify existing ones if needed.
In both 51ºÚÁϲ»´òìÈ Campaign Standard and Campaign V8, Security groups and Operator groups are mapped to Product profiles in the Admin console. If you want to assign a Security group or Operator group to a user, you can link the corresponding Product profile in the Admin console. This association is synchronized when the user logs in. Learn more on Product profile
Migration approach from User roles to Named rights
In 51ºÚÁϲ»´òìÈ Campaign Standard, the term User role is referred to as Named right in Campaign V8. The table below outlines the terminology used for Named rights in Campaign V8 corresponding to User roles in Campaign Standard.
Migration approach from Organizational unit
Users in multiple security groups are assigned the organizational unit of the highest-ranking security group. If multiple groups have parallel top-level units, login is restricted in Campaign Standard but grants broader access in Campaign v8 after migration, potentially escalating privileges. To prevent this, avoid assigning users to security groups with parallel organizational units.
In 51ºÚÁϲ»´òìÈ Campaign Standard, the Organization uni t is mapped to the existing Folder hierarchy model in Campaign V8 to maintain similar access control. Learn more on folder management
Migration approach from Program
In Campaign V8, Programs are represented as Folders. Campaign V8 enables the creation of folders and allows restricting access to them.
By using Groups and Named rights, Operators can be granted access to specific Folders within the navigation hierarchy, with the ability to assign read, write, and delete permissions. Learn more on folder management
Since a Program is treated as a Folder in Campaign V8, its access can be managed in the same way as any other folder. After migration, Campaign Standard administrators can follow these steps:
-
From the explorer, right-click on any folder and select ±Ê°ù´Ç±è±ð°ù³Ù¾±±ð²õ….
-
Navigate to the Security tab.
-
Modify the operator group permissions as per the desired access model.
Product profile mapping to access REST APIs
To access transactional APIs from the execution instance in Campaign V8, a new Product profile is required, in addition to the Administrator and Message Center product profiles. This new Product profile will be added to existing or pre-created technical accounts in Campaign Standard.
After migration, Campaign Standard users should review their Product Profile mappings and assign the appropriate Product Profile if they do not wish to link their Technical accounts to the Administrator Product Profile. For future integrations, we recommend using the Campaign V8 Tenant ID in the REST URL instead of the previous Campaign Standard Tenant ID.
Migration of access to built-in Campaign resources for Campaign Standard operators
Operators migrated from Campaign Standard will have read access to specific built-in resources in Campaign V8.
Non-migrated security groups and roles non-migrated-groups-roles
Below is a list of Campaign Standard roles that have not been transitioned:
-
Default Relay Account
-
Message Center Push
Below is a list of Campaign Standard security group mappings that have not been transitioned.
-
Message Center Agents
-
Message Center Push Agents
-
51ºÚÁϲ»´òìÈ Experience Manager application managers
-
Relay Account
Note that custom roles created and assigned to users in 51ºÚÁϲ»´òìÈ Campaign Standard will not be migrated to Campaign V8.