Roles
Roles define the access and action permissions that Users can perform within the USP Manager UI. Users can perform all functions permitted by their assigned Role, which defines their system access boundaries.
Each User must be assigned exactly one predefined Role. Custom roles and granular permission management are not available. See the List of Roles for details on each Role.
Assigning Roles
Users are assigned a Role upon creation and cannot be changed after creation. If a new Role is needed, then a new User must be created.
List of Roles
The following table summarizes the available Roles. For a full list of permissions for each Role, see Role Details.
| Role | Description |
|---|---|
| Admin | Exercises complete configuration and management control of all Configuration Items, including Users. |
| Read-only | Views all Configuration Items without modification rights. Can edit own User (except User ID and Role). |
Role Details
This table shows a full list of permissions for each Role, including all the Configuration Items each Role can Read/Write/Delete and Enable/Disable.
Keys:
- R = Read
- W = Write
- D = Delete
- S/S = Start/Stop
| Role | Status | Rules | Routes | Listeners | Proxy Servers | Accounts | Certificates | Keys | LDAP | Users |
|---|---|---|---|---|---|---|---|---|---|---|
| Admin | RWD + S/S | RWD | RWD | RWD | RWD | RWD | RWD | RWD | RWD | RWD |
| Read-only | R(*) | R | R | R | R | R | R | R | R | RW(**) |
(*) Cannot view configuration data.
(**) Can only edit Name, Email, and Password.