Skip to end of metadata
Go to start of metadata

You are viewing an old version of this page. View the current version.

Compare with Current View Page History

« Previous Version 26 Next »

https://docs.128technology.com/docs/config_RBAC/

  • Create an MSP's customer: Resource Group
  • Assign resources to a resource Group ( like: Router, service, Service-policy, . . . )
  • Create Role: user Access Management role ( like: Admin, operator,... )
  • Create Users and Assign roles to users
  • Open a New session with the use User account


Create an MSP's customerAuthority level
Create a Resource Group

Configure > Authority > Create a New Resource Group / RBAC

Assign resourcesRouter level
Assign Resource Groups to Authority-level Resources ( Router )

Configure > Router > Resource Group > Select the RBAC

( !!! service group is different, it's just grouping many services together for ... )

Assign a Resource Group to a Service:

Configure > Service > Service Applies To > Select: resource-group 

>> then ADD the RBAC:

example: MSP-Customer1

Assign a Resource Group to a Service-Policy:

Configure > Service Policy > Service-Policy Applies To > Select : resource-group

>> then ADD the RBAC:

example: MSP-Customer1

Create user Access Management RoleRole or functions per MSP's customers
Create an Access Management Role

Configure > Authority > Access Management Roles > Add ACM: Company1-Admin

>>> Add Capability: Read, Write and provisioning

>>> Map with Resource Group:  

example: MSP-Customer1



>>> Include or Exclude resources    (can be done at the resource level instead = Easier )

Generated ( created from the ressource 

data model

https://docs.128technology.com/docs/concepts_glossary/


Create User and Assign roles to users

Create Users and Assign Roles


Users >> Create a New user: company1-admin 

>> Map to: company1-Admin-role





show roles


Open a New sessionlog as MSP-customer1 user account






  • No labels