Skip to main content

Room rights

Tenant admins switch every room. A teacher sees and switches only the rooms granted to them; other rooms do not appear for them at all. A teacher without rooms sees No rooms are assigned to you yet. Room rights (tenant admins) is where rooms are granted.

Grant rooms​

  1. Give the person the Teacher role for Entrosity Matrix on Entrosity Hub (Organization members). Within about a minute they appear on Room rights. Rights can only be given to teachers (not_teacher otherwise).
  2. Open Room rights and choose the Firewall.
  3. For each teacher, tick the rooms (All / None for all rooms of the firewall) and choose Save. Rights of … saved.

The list you save replaces the teacher's rooms on that firewall. Every save is recorded in the History as Room rights with the rooms before and after.

What a right covers​

  • Enabling and disabling the room's policy, including disable until, bulk changes of that room, and cancelling its re-enable.
  • Seeing the room: its card on Rooms, its address groups on Addresses and groups, its allowed-sites list (the list for all rooms is shown read only), its re-enable schedules and its entries in the History. Rooms without a right stay hidden from the teacher, and so do firewalls without any of their rooms.
  • Changing IPs and adding computers stays with tenant admins.
  • Rights are per room code on a firewall (SB, FB or HAC rooms alike). The policy itself is checked again for VDOM, direction and name before every change.

When changes take effect​

  • A granted room appears and can be switched at once (after a refresh of the page); a removed right hides the room.
  • A removed right stops the teacher's next change and any change of that room they sent that has not been written yet: the connector asks Matrix right before the write, and Matrix checks the right again (the history shows the step as refused, room_not_granted).
  • A person whose Matrix role changes on the Hub (to viewer, or removed) loses their rights within about a minute; a disabled Hub account is signed out.

New and removed rooms​

  • Newly found rooms are not granted automatically, not even to teachers who have all other rooms.
  • A granted room that is no longer on the firewall is marked No longer on the firewall: remove the right if it is no longer needed. Removing a right is always possible; adding one needs the room to be reported by the firewall.
  • While the firewall is unreachable, rights can still be removed; rooms it has not reported yet can be granted once it is back.