USER ROLES
VSP provides an option to define User Roles and their accesses to different CMS features. There are five default roles available. Users can be associated with default roles or new roles.
DEFAULT CMS USER ROLES
There are five default roles available in CMS: Super Admin, Auditor, DevOps Admin, Infrastructure Admin and SecOps Admin. All these roles have Read permissions across the modules. The table below provides Manage or Edit privileges for each role at the sub-module level.
Sub-Module |
Super Admin |
Auditor |
DevOps Admin |
Infrastructure Admin |
SecOps Admin |
Application Privileges |
|||||
Discovered Application |
✔ |
|
✔ |
|
|
Provisioning |
✔ |
|
✔ |
|
|
Application Privileges Logs |
✔ |
|
✔ |
|
✔ |
LFI RFI |
✔ |
|
✔ |
|
✔ |
Application Incidents |
✔ |
|
✔ |
|
✔ |
Web Profile |
✔ |
|
✔ |
|
|
File Events |
✔ |
|
|
✔ |
|
Host Privileges |
|||||
Host Profile Management |
✔ |
|
|
✔ |
|
Application Control Policies |
✔ |
|
|
✔ |
|
Host Incidents |
✔ |
|
|
✔ |
|
Protection Engine |
|||||
Protection Actions |
✔ |
|
|
|
✔ |
Protection Profiles |
✔ |
|
|
|
✔ |
Manage Access |
|||||
Users |
✔ |
✔ |
✔ |
✔ |
✔ |
Roles |
✔ |
✔ |
✔ |
✔ |
✔ |
LDAP |
✔ |
|
✔ |
✔ |
|
SAML |
✔ |
|
|
|
|
Reports |
|||||
Scheduled Reports |
✔ |
✔ |
✔ |
✔ |
✔ |
Report Settings |
✔ |
✔ |
✔ |
✔ |
✔ |
Configurations |
|||||
Dashboard |
✔ |
✔ |
✔ |
✔ |
✔ |
Email Notifications |
✔ |
|
✔ |
✔ |
✔ |
Threat Intelligence Settings |
✔ |
|
✔ |
✔ |
|
License Manager |
✔ |
|
✔ |
✔ |
|
MSSP Proxy Settings |
✔ |
|
✔ |
✔ |
|
Incident Data Publishing |
✔ |
|
✔ |
✔ |
|
System Integration |
|||||
Ticket System |
✔ |
|
|
|
|
Syslog Server |
✔ |
|
|
|
|
Splunk |
✔ |
|
|
|
|
Webhook Config |
✔ |
|
|
|
|
Deployment |
|||||
License Entitlement |
✔ |
|
|
|
|
Location Management |
✔ |
|
|
✔ |
|
Probe Management |
✔ |
|
|
✔ |
|
Analysis Engine |
✔ |
|
|
|
|
Installation Settings |
✔ |
|
|
|
|
Table – Manage/Edit Privileges