User roles and groups

A role is a named set of permissions you can assign to a user. Roles are how you manage access to NAM functionality.

Overview and example

There are two ways to assign a role to a user:

  • You can assign the role directly to the user.
  • You can assign a role to a user group, and then make the user a member of that group. Everyone in a group gets the roles assigned to that group.

Users get a combination of the roles assigned directly to them and the roles they inherit from membership in groups. See role descriptions for details on each role.

Important:
You should allow a few minutes for role assignment changes to propagate through your system.

Assigning roles directly to a single user

To assign roles to a single user:

  1. In the NAM Console menu, select Security ► Users.

  2. Click Actions and select Edit user for that user.

  3. On the Edit user screen, review the Roles assigned to user section.
    This section lists all roles this user has right now:

    role inherited from group - indicates a role that is inherited from membership in a group. To remove an inherited role, you need to remove this user from the group, or you need to remove the role from the group (in which case everyone in the group will lose this role).

    role assigned directly - indicates a role that is assigned directly to this user. To remove a directly assigned role, you need to edit the user's roles on the Edit user screen as described in this procedure.

  4. To remove a directly assigned role, expand the Roles section of the current screen (Edit user) and select or clear roles as needed.

  5. Review the Roles assigned to user section one more time to make sure the user has only the roles that user should have.

  6. Click Save to save your changes.

Assigning roles to a user group

To assign roles to a user group (to all users in a group):

  1. In the NAM Console menu, select Security ► User groups.
  2. Find the group.
  3. Click Actions and select Edit for that group.
  4. In the Edit group window, click the Roles tab.
    All available roles are listed, with the check box selected for roles already assigned to this group.
  5. Select or clear the check boxes for the roles that are assigned to all users in this user group.
  6. Click Save to save your changes.

Assigning a user to a group

To add a user to an existing group:

  1. In the NAM Console menu, select Security ► User groups.
  2. Find the user.
  3. Click Actions and select Edit user for that user.
  4. Click the Roles tab.
  5. Review the roles assigned to this user directly or indirectly.
    • Select Inherited from groups to display roles assigned to groups to which this user is a member. (Roles this user has because this user is in certain groups that have those roles.)
    • Select Assigned directly to display roles assigned directly to this user, regardless of group membership. (Roles this user has because they were assigned specifically to this user, not because this user is in certain groups.)
  6. With Assigned directly selected, you can select or clear the check boxes for the roles assigned specifically to this user.
  7. Click Save to save your changes.

Roles available for users and user groups

See User role descriptions for descriptions of all available roles.