Roles
Overview
Roles define what a user is able to create, view, & modify on the PPA Appliance.
Custom roles can be created & granted granular permissions from a comprehensive list.
They can be delegated to individual users and imported Active Directory groups.
Delegates of multiple roles will receive an accumulation of the permissions in those roles.
Role Delegation vs Task Delegation
PPA roles & their permissions are not linked to task delegation, or the ability to start tasks.
You should use roles to control what people can view & change in PPA itself.
Task delegations are used to control which users have access to the individual tasks in PPA.
Default Roles
There are 2 built-in roles available in PPA:
- Admins (always has all permissions, cannot be modified)
- Users (starts with basic permissions, can be modified)
Custom Roles
To create a role you need to:
- Provide a name
- Delegate any number of groups and/or users
- Select the role's permissions
Once created a summary of its permissions & delegations will be visible on the roles page:
Auditing
The delegates for a role can be viewed by clicking the Manage Role button.
This view shows you exactly how each delegate has gained access to the role.
You can also download a spreadsheet of delegations from this page.