Administration Guide > Composite Domain Administration > Manage User and Group Privileges
 
Manage User and Group Privileges
Resource developers, owners, and users delegated Grant privilege on a resource can also set resource specific privileges for that object. TDV administrators with Modify All Users or Modify All Resources privileges can also review, set, and revoke privileges for any resources and define rights for any groups and users in TDV.
Management of user and group privileges on resources is generally best left to the developer who created and owns the resource, providing access for a security audit by an administrator at any time.
To facilitate decentralized management of specific resource privileges, define groups of users with similar and well-defined roles where possible.
Group assignment of privileges on the resource is encouraged for any large deployment.
See the Managing Security for TDV Resources for more details on access privileges and for description of the Manager Resources pages.