# Set up Security

**SharePoint Security Sync** has the following security roles:

{% tabs %}
{% tab title="SharePoint Security Sync Administrator" %}
**SharePoint Security Sync Administrator** has the privilege to create and modify '**Entity Configurations**', '**Connector entity records'**, '**Security Templates'**, and '**Bulk Migration Jobs'**.
{% endtab %}

{% tab title="SharePoint Security Sync User" %}
**SharePoint Security Sync User** will be able to '**Read**' and can create '**Bulk Migration Job'** and utilize all the Attach2Dynamics features in SharePoint such as Upload, Download, Create, Delete, etc.
{% endtab %}
{% endtabs %}

{% hint style="info" %}
**Note: It is necessary to assign any one of the above security roles to use SharePoint Security Sync Solution**
{% endhint %}

**CRM Security Role Requirements**

Please ensure that both internal and external users have the required CRM permissions to use the **SharePoint Security Sync** functionality. The user’s security role should include the following privileges:

* **Document Location** – Full access at the Organization level (except *Delete*)
* **SharePoint Site** – Read access at the Organization level
* **Security Role** – Read access at the Organization level
* **Team** – Read access at the Organization level
* **System User** – Append and Append To permissions at the User level
* **Business Unit** – Read access at the Organization level
* **Organization** – Read access at the Organization level
* **Web Resource** – Read access at the Organization level

{% hint style="info" %}
**Note: Additionally, please make sure that the users (both internal and external) are added as members to the respective SharePoint site. If users are not added as site members, they may encounter permission-related errors when accessing the Documents tab.**
{% endhint %}

Follow the simple steps given below to assign security roles to CRM users.

* Navigate to **SharePoint Security Sync App** --> **License Registration** Page --> Click on the **Assign Security Role** button.

<figure><img src="https://272130504-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2F-M0QoyqUVI8_HaZ9FOSL%2Fuploads%2FmJU0SNv8MYd09umN0k0W%2Fimage.png?alt=media&#x26;token=69e9cb7e-6a09-47ab-93f9-43e47f0ebc03" alt=""><figcaption></figcaption></figure>

* A confirmation dialog box will appear. Click on **Ok.**

![](https://272130504-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2F-M0QoyqUVI8_HaZ9FOSL%2Fuploads%2FGp9dueLjDnL55412FHxR%2FSec_2.png?alt=media\&token=1ac7b8f5-d1ca-41cd-a33f-36e1a0cf5b8d)

The **SharePoint Security Sync user** security role will be now assigned to all the users present in Dynamics 365 CRM.

OR, you can follow another alternative method mentioned below:

* Go to **Advanced Settings** --> **Settings** --> **Security**.

![](https://272130504-files.gitbook.io/~/files/v0/b/gitbook-legacy-files/o/assets%2F-M0QoyqUVI8_HaZ9FOSL%2F-MLfAMIZ2_pSQAMBQMui%2F-MLfGM_G5m8kXQSO3kZw%2Ff.png?alt=media\&token=66499aba-de4b-4b02-9236-c9f30bf60460)

* Select **Users**

![](https://272130504-files.gitbook.io/~/files/v0/b/gitbook-legacy-files/o/assets%2F-M0QoyqUVI8_HaZ9FOSL%2F-MLfAMIZ2_pSQAMBQMui%2F-MLfGQeluJ0gl1_caM9n%2Fg.png?alt=media\&token=eadec480-0387-40b6-9af0-962784931ec5)

* Select user --> Click on **MANAGE ROLES**

![](https://272130504-files.gitbook.io/~/files/v0/b/gitbook-legacy-files/o/assets%2F-M0QoyqUVI8_HaZ9FOSL%2F-MLfAMIZ2_pSQAMBQMui%2F-MLfGUua-3cKrpUhPfl4%2Fi%20coopy.png?alt=media\&token=c0696a97-4545-4ee0-87b6-fc70127808c0)

* Click on any one of the security roles --> Click **OK**.

![Admin Role](https://272130504-files.gitbook.io/~/files/v0/b/gitbook-legacy-files/o/assets%2F-M0QoyqUVI8_HaZ9FOSL%2F-MUNgRgpfFYuvbrwxKV-%2F-MUNmN0EVAlVaP0uITCE%2FSet%20Security_1.png?alt=media\&token=b39349b6-0576-4352-a35c-92e5c8d161d7)

![User Role](https://272130504-files.gitbook.io/~/files/v0/b/gitbook-legacy-files/o/assets%2F-M0QoyqUVI8_HaZ9FOSL%2F-MLfAMIZ2_pSQAMBQMui%2F-MLfGYkAyB_AYZbYS399%2Fi.png?alt=media\&token=2eebcc02-1cad-44b0-b5d3-e647808cab4e)

{% hint style="success" %}
For further queries, reach out to us at <crm@inogic.com>
{% endhint %}
