Zones, Users, Groups, Roles and Permissions
YOUnite can group an organization's resources to mirror the organization's structure (e.g. divisions, departments, districts, etc.) and use these groupings to create relationships within the organization. With YOUnite these groupings are called zones.
A zone refers to a collection of systems/applications owned by groups inside of an organizations. Zones are defined within MDM by the MDM Administrator for each zone. Zones act as a boundary for which permissions and scopes may be defined so that an organization can control what data is accessible between the different zones within the organization. All resources within MDM belong to a zone and some resources, such as users, can belong to multiple zones. Each zone has at a minimum two Zone roles: a Zone Admin and a Zone Data Steward.
When discussing zones it's important to understand the distinction between permissions and ACLs:
- Permissions grant access to resources (users, groups) in the YOUnite ecosystem
- ACLs manage access to inbound and outbound data (see the Governance page for more detailed ACL descriptions).