Adding a Role
To add a new role, you can create a new rule or clone (copy) an existing role.
Permissions for roles are organized by services and commands.
-
Select Tools > Administration and then click Roles.
-
On the Roles page, do one
of the following:.
-
Click New role
-
Click the Clone icon of the role you want to copy.
-
-
On the Adding Role page,
type values in the following fields:
Field
Description
Key
The key for the role. A key is an identifier that must be globally unique within the organization. The valid characters for a key are letters, numbers, underscore, and hyphen.
Name
The name of the role that is displayed on Management Portal pages.
Description
An optional description of the role.
-
Select the services and commands you want to enable.
To expand a service to display its commands, click the + icon of the service. You can select or clear individual commands. If you select a service, all the commands in that service are selected.
Additionally, you can select multiple services at once as follows:
Button
Description
Check services
Uncheck services
Selects all services. If a service is selected, then all the commands in that service are selected. The button name changes based on whether you select or clear services.
Check read ops
Uncheck read ops
Selects all commands that are read commands, including find, list, cloud, get, aggregate, history, and current. The button name changes based on whether you select or clear all read operations.
Check modify ops
Uncheck modify ops
Selects all of the commands that are add, edit and delete commands, including activate, add, create, deactivate, delete, publish, put, remove, set, and update. The button name changes based on whether you select or clear all modify operations.
Uncheck all
Clears all services and all commands.
-
(Optional) Add or update security tags.
Field
Description
View security tags
Tags that can be associated with things to limit the view access of a role to a subset of the things in the organization.
Update security tags
Tags that can be associated with things to limit the update access of a role to a subset of the things in the organization.
- When you finish, click Add.