Control access to Analytics for 8x8 Work data by user roles and permissions
Analytics for 8x8 Work now supports Role-Based Access Control (RBAC), enabling admins to limit access to reporting and recording data based on role and assigned scopes. With RBAC, users only see the data relevant to their responsibilities, rather than having full, system-wide visibility.
Additionally, new User Group–based reporting is available. This enhancement organizes analytics by User Groups defined by admins in 8x8 Admin Console. Previously, users could access all PBX, Call Queue, and Ring Group data, while specific reports (Essentials or Supervisors) were only accessible to users with certain licences for Analytics for 8x8 Work .
How Role-Based Access Control works
Role-Based Access Control (RBAC) now offers system-defined roles and the ability to create custom roles with particular scopes to cater to different needs.
RBAC in 8x8 Work manages user access using two components:
- Role: Specifies permissions for functionalities such as using Analytics reports (including Analysis Essentials and Analytics Supervisors).
- Scope (assignments): Defines how these permissions apply to data, such as company-wide or specific PBXs, or user groups (User Group, Ring Group, and Call Queue).
Admins can grant:
- Full Access: All User Groups, Call Queues, and Ring Groups.
- Restricted Access: One or more specific scopes.
When assigned to a User Group(s), Call Queue(s), or Ring Group(s), users gain access to:
- ALL historical activity data of those groups and queues, regardless of who the members are.
- ALL ongoing activity data of those groups and queues, regardless of who the members are.
Control users access to 8x8 Admin Console by User Groups
Admins can create User Groups to restrict data access further. User Groups enable customer admins to limit the scope of access within specific role assignments, offering tailored data access, such as recording data. For example, supervisors can only access recordings for the groups they manage and their associated members, not across the entire organization.
Note: Customer admins can assign users to a single User Group through any user administration flow in 8x8 Admin Console.
Example of control user access to 8x8 Admin Console based on User Groups
Access control based on User Groups allows customers to define the scope of permissions, such as company-wide or specific PBXs or user groups.
-
Supervisors can be assigned permission to access data with a combination of multiple scope types (similar to CC Analytics permissions):
- User Groups - allowing access to data relating to calls from or to any member associated with those groups
- Call Queues
- Ring Groups
-
Upon gaining access to User Groups, Queues, or Ring Groups, the user obtains access to:
- ALL historical activity data of those groups and queues, regardless of who the members are.
- ALL ongoing activity data of those groups and queues, regardless of who the members are.
Configure role-based access to Analytics for 8x8 Work
As an 8x8 Admin Console administrator, you can manage user access to reporting data based on predefined permissions and User Groups, Call Queues and Ring Groups. You can grant full access or limit users to a specific user group, call queue, and/or ring group scope.
To manage user access to Analytics for 8x8 Work reports:
- Log in to 8x8 Admin Console
-
Verify or create user groups:
- Go to Home > Work Groups > User Groups.
- Confirm that the required user group exist and is displayed in the User Groups list. If missing, create a new user group(s).
To learn how to create a user group, see Create user groups.
-
Verify Analytics for 8x8 Work roles:
- Go to Home > Permissions & Roles > Roles.
- Ensure Analysis Essentials and Analytics Supervisors roles are listed in the Roles list. If missing create them.
To learn more about defining custom roles, see see Role-based access control - Create custom role
-
Assign roles and scopes:
- Go to Home > Permissions & Roles > Assignments.
- Click +Create Assignment.
- Select the user from the Assign to list.
- Under Role, choose Analytics Essential or Analytics Supervisor.
-
Under Scope, select:
-
For full access: All User Groups, All Call Queues, and All Ring Groups.
-
For restricted access: Specific user groups, call queues, or ring groups.
To learn more about assigning roles, see Assign roles.
-
- Click Save. The user now appears with their assigned role.