ProjectLibre Academy · Administration & Configuration
Administration & Security
How the Administration modal governs users, teams, roles and project access, with a role-gated control plane and setup checklist.
See also: Administration & General Configuration · User Management · RBAC · Personal Settings & Avatar · Portfolio · Assigning Resources · My Work & My Team.
Watch: User Management (~3:30) — same video as User Management; framed here as Administration & Security.
Admin modal as the security control plane
Access depends on role. Opening Administration shows a modal whose tabs and controls differ based on your signed-in role. For administrators the tabs are: Users · Teams · Roles · Licenses · Payment · Company. Footer actions on every tab: Cancel · Apply · Save.
Think of Users / Teams / Roles as the identity and RBAC surface; Licenses / Payment / Company as finance and sign-up. For timesheet/approval project options that also sit near Administration teaching, see General Configuration.

Open Administration from the left nav
-
In the left sidebar, click Administration.
-
The Administration modal opens (demo lands on Users).
-
Confirm you are signed in with an admin-capable role — the UI is role-gated.
Step-by-step chrome and discard-unsaved dialog also appear under Administration modal and User Management — Open Administration.
Provision users — identity, password, resource link
On the Users tab: list columns Email · First Name · Last Name; toolbar + Add User (and trash to delete).
Security-relevant fields when adding a user
-
First Name, Last Name, Email.
-
Password — new users: placeholder Enter a password (show/hide eye). Existing users: Leave empty to keep current.
-
Resource — default + Create new resource, or associate the login with an existing resource instead.
-
Roles (dual-list Active Selection / Search) — default: project manager / UI
Project_Manager; drag e.g.Team_Memberwhen needed. -
Teams (same dual-list) — optional; demo puts a user on IT Team and India.
-
Apply / Save.




Detailed guidance: Add user · Add user to a team.
Teams — portfolio access boundary + assignment filter
The Teams tab builds org groups (+ Add Team, Team Name, Resources dual-list). Demo: India Active members Tayler, Kai, Kristen; add Connor and Sidney, then Save.
-
Assignment filter — when a project manager assigns resources, they see team members only, not the entire pool.
-
Portfolio visibility limit — a person on a project team (customer example) sees only that project in the portfolio.
-
Override —
Portfolio_Managerstill sees all projects despite team limiting. Deep dive: User Management — Teams.


Roles & privileges — inheritance summary
On Roles: + Add Role, duplicate/copy, delete; field Role Name. Listed roles include Administrator, Project_Manager, Customer Role, Portfolio_Manager, Team_Member, Resource_Manager, Team_Member Limited Views.
Inherited Roles (dual-list): demo shows Administrator inherits Portfolio_Manager + Resource_Manager (badge 2); Project_Manager inherits Team_Member (badge 1). privileges are inherited as they go up — Team Member = least privileges; Project Manager = next level up.
-
GENERAL — Authenticated User (checked; TM tag / lock cues).
-
VIEW ACCESS — per-surface checkboxes (Home, Dashboard, Portfolio, Projects, Resource Pool views, Project: Gantt / Spreadsheet / Usage / Network / WBS, Predecessors, Successors, Assignments, Calendar, Reports, …) with TM / PM tags and lock icons.
-
ADMIN ACCESS (bottom of scroll) — Users · Teams · Roles · Admin Portfolio (PM tags). More groups exist below the fold (not fully captured).
Role capability summary: Administrator can add/delete; Project Manager manages/deletes their projects; Portfolio Manager sees all projects; Team Member (good for contractors) sees only their project and only their tasks on login; Resource Manager is for setting this structure up.




Project-level access (Manage Access)
Org roles and teams are only half of access. Which projects someone can open — and whether they act as Project Manager, Team Member, or another project role — is controlled from Portfolio → Manage Access.
Licenses · Payment · Company
These Administration tabs are now walked in the Admin Menu tour under Administration modal — Licenses (PM vs Team Member seats), Payment, and Company (currency, Timesheet, DCMA thresholds, scoring). This Security section keeps Users · Teams · Roles · Manage Access as the primary RBAC lab; use the modal chapter for finance / company-standards depth.
First-time security setup checklist
A practical first-pass order for a new Cloud tenant (security angle):
-
Sign in as Administrator → open Administration.
-
Review built-in Roles / Inherited Roles (least-privilege Team Member vs Portfolio Manager override).
-
Create Teams that match how you want to limit portfolio visibility and assignment pools.
-
Provision each person: email + password + role + optional team → Save.
-
For each project, finish access in Portfolio Manage Access (details).
-
Point new users at Personal Settings & Avatar (their own Options — not org admin).
Expanded checklist with product wording: User Management — First-time setup checklist · How it fits together.
Watch the Administration & Security video
User Management (~3:30) — identical YouTube ID to the User Management chapter. Use this hub for security framing; use User Management for the full RBAC lab.