Access

The Access menu in Data Resiliency Service is the central place for managing user access and viewing access point definitions.

Data Resiliency Service manages access to actions, resources, and integrations by using a concept called Access points. Access points are a simple but powerful mechanism for grouping common elements of the Data Resiliency Service. Access points allow security administrators to authorize users to access resources and actions they need in the Data Resiliency Service.

Data Resiliency Service defines the following three authorities to simplify the rights to resources that are granted to a user:
  • Viewer: Able to view all properties and information about resources or integrations in Data Resiliency Service.
  • Editor: Able to edit properties and information about resources available within their Access points and authority grants, where applicable. Users with the Editor authority cannot create or delete resources.
  • Administrator: All rights of Editor, and the ability to create or delete resources where applicable, and disable or enable integrations, within their Access points and authority grants.

Security administrators can assign users and groups access to Access point based on resource location. A resource location is determined based on the location of the connection manager, which provides information about the source device of the resource. When updating Access point memberships, security administrators can select the location they want access to be scoped to for the users and groups. Users and groups can be added to an Access point repeatedly, if the location scope of authority does not overlap. For example, a security administrator can add a user to the All resources Access point as an Editor for all locations, and as an Administrator for a single location.

The DRS Actions and Governance profile Access points do not have location scoped authority. Applying a location scope of authority to the All resources Access point effectively grants no authority to DRS Actions and Governance profile resources.

The following image illustrates the concept of access points for different users:

user access management