As an organization owner, you create custom roles with cross-services access by combining permissions from existing service roles. You can assign custom roles to users and groups in your organization. This gives you greater flexibility and granularity in managing service access in your organization.
- By selecting individual permissions from predefined built-in service roles.
- By copying full sets of permissions from predefined built-in service roles.
- A combination of selecting individual permissions and copying full sets of permissions from built-in or custom roles.
Your starting point for working with custom roles is the Cloud Services Console.
page inThe table provides information for working with custom roles in your organization.
- Permissions Matrix to view the permissions that each pre-defined Carbon Black Cloud Service Role has.
- Roles Permission Descriptions to view descriptions for each permission.
To... | Do the following |
---|---|
Create a custom role |
|
Edit an existing custom role | Editing the permissions of an existing custom role will affect all users and groups that have this role in the organization. The Created by column of the Roles table indicates if a role is built-in or created by an organization owner. You can modify the permissions of custom roles, but you can't modify the permissions of built-in service roles.
|
Delete a custom role | Deleting a custom removes it permanently from the organization. Users and groups who have this role will lose the access permissions granted by the custom role.
|
Assign a custom role | You assign custom roles in the same way you assign service roles. You can do that either when inviting a user in the organization or by editing a user's roles in the organization. |