DataPower Interact Gateway user roles
DataPower Interact Gateway uses role-based access control (RBAC) to manage access to its capabilities.
User roles determine which features and actions are available to users across DataPower Interact Gateway capabilities: IBM API Studio, Analytics, User management, and Settings.
DataPower Interact Gateway provides the following predefined roles. Each role has a fixed set of permissions and cannot be customized.
- Administrator
- Administrators have full access to DataPower Interact Gateway capabilities. Use this role for users who manage the environment, configure settings, and control user access.
- Developer
- Developers can create and manage MCP tools and LLM provider APIs, and view analytics and settings.
For details on how to administer users and roles in DataPower Interact Gateway, see Administering users and roles.
DataPower Interact Gateway roles and permissions
The following table lists the permissions that are assigned to each role and describes the actions that each permission allows.
| Capability | Administrator | Developer | Description |
|---|---|---|---|
| Studio | View, Manage |
View, Manage |
View: View MCP tools and LLM provider configurations. Manage: Create, edit, publish, and delete MCP tools and LLM provider configurations. |
| Analytics | View | View | View: View MCP and AI LLM analytics. |
| User management | View, Manage |
No access | View: View roles in the User management page. Manage: Create, edit, and delete users, and assign roles to users. |
| Settings | View, Manage |
View | View: View all options in the Settings page. Manage: Create, edit, and delete TLS client profiles, TLS server profiles, OAuth providers, and SMTP configurations. |
Developer Portal roles and permissions
The following are the roles available in Developer Portal and the actions that each role can perform:
| User role | Description |
|---|---|
| Administrator | View: View all modules and assets within the subsystem. Manage: All Developer Portal application settings and User management settings. |
| Provider | View: AI assets such as MCP tools and AI LLM provider APIs. Manage: Can manage assets such as MCP tools and AI LLM provider APIs, applications, and communities, and view API economy and usage dashboards. User with this privilege can view all providers, partners, and consumers. |
| Partner | View: AI assets such as MCP tools, AI LLM provider APIs, and communities. Manage: AI assets such as MCP tools, AI LLM provider APIs, and communities. User with this privilege can view other partners and consumers. |
| Consumer | View: Asset gallery Manage: Can use Asset gallery, try MCP tools and LLM provider APIs. User with this privilege can view other consumers based on the configured consumer visibility. |