---
title: "Role-based access control"
description: "What is role-based access control (RBAC)? Granting permissions through job roles instead of person by person. Learn how it supports segregation of duties."
url: https://1flux.ai/glossary/role-based-access-control
last_updated: 2026-10-10
---

[ERP and platform](https://1flux.ai/glossary#erp-and-platform)

# Role-based access control

What is role-based access control, and how does it stop the person who buys from also approving?

Glossary Updated 10 October 2026

Definition

Role-based access control (RBAC) grants people permissions through roles that match their jobs, such as storekeeper or accountant, rather than configuring each person individually.

## What is role-based access control used for?

An administrator defines roles with sets of permissions (view, create, approve, post) and assigns people to them. When someone changes job, you change their role. RBAC supports segregation of duties: the person who raises a purchase can’t approve it, and the person who records a goods receipt can’t post the supplier invoice. It’s often combined with record-level rules, such as salespeople seeing only their own customers.

Example: a “Buyer” role can create and issue purchase orders but can’t approve requisitions or post invoices.

Who changed what under each role is recorded in an [audit trail](https://1flux.ai/glossary/audit-trail).

In 1flux

Custom roles draw on more than 100 permissions in 15 module groups, with separate lanes for requesters, approvers, buyers, storekeepers and accountants. You can choose whether everyone sees all CRM records, or each person sees their own records and their team’s. [See roles, permissions and audit](https://1flux.ai/platform/access-control)

Related

## Keep exploring

### [Row-level security](https://1flux.ai/glossary/row-level-security)

Database rules that restrict which rows each user can see.

### [Approval workflow](https://1flux.ai/glossary/approval-workflow)

Rules that route a record to the right people for sign-off.

### [Audit trail](https://1flux.ai/glossary/audit-trail)

A record of who changed what, and when.

### [Roles, permissions and audit](https://1flux.ai/platform/access-control)

Custom roles, record visibility along reporting lines, entity access and row-level security.

Last updated 10 October 2026
