You define the access of the users in your organization by assigning roles. Users are granted access to the organization and services when you assign roles to them directly or if they inherit them as members of groups.

You can edit the roles of users in your organization, and view the groups to which they belong. Here's what you need to know about editing the roles of users.
  • Users can hold a combination of roles - the roles assigned to them directly and the roles inherited from a group. For example, a direct role assignment for support user and some group-inherited roles such as developer and VMware Carbon Black Cloud administrator.
  • When a user is assigned roles that conflict with one another, they receive the role that has greater permissions. For example, if a user is assigned a read-only role and an administrator role, they receive the administrator role.

Procedure

  1. From the Carbon Black Cloud console, click the VMware Cloud Services Application Menu in the top-right corner and select Identity & Access Management.
  2. Click Active Users, select the check box next to a user, and then click Edit Roles.
  3. Change the user's organization roles and service roles as required.
  4. If the user has roles that were assigned through groups, click Show to view the roles and the groups.
    Changes you make to the user's role might override their group-assigned roles.
  5. Click Save.

What to do next

To return to the Carbon Black Cloud console, click Services and then launch the Carbon Black Cloud service.