Roles
A role is a set of permissions that can be assigned to a user. Assigning a role confers specific access capabilities.
When you assign a role to a user, you must specify one or more access collections for that role. This limits the scope of the role to only those access collections that are appropriate for that user.
For example, Sarah is responsible for the NT servers and workstations of your company, and you assign her the supervisor role for an access collection that contains those systems. Jim is responsible for the Linux® systems, and you assign him the supervisor role for an access collection that contains those systems. Although Sarah and Jim are assigned the same role (because they perform the same operations), they have access to different resources.
Predefined roles
- operator
- This role has Read permission.
- supervisor
- This role has Read, Update, and Discover permissions.
- administrator
- This role has Read, Update, Discover, and Admin permissions.
Additional roles that you can create
- Read + Update
- Permission to read and update objects in assigned access collections.
- Read + Update + Admin
- Permission to read and update objects in assigned access collections and to create users, roles, and permissions.