Installation Manual

Managing Security362
Editing Roles
The software lets you modify the default roles and/or the roles you have created. See ”About
Security for the Management Server” on page 349 for more information about roles and
organizations.
Keep in mind the following:
Only users belonging to the Domain Administrator role can modify roles.
Domain administrators can change the user names and roles of other domain administrators,
but they cannot modify their own user name and roles while logged into the management
server.
After you click OK in the Edit Role window, any users assigned to the role you edited are
logged out of the management server. Users see the changes when they log back into the
management server.
The Role Name box does not accept special characters, except spaces and the following
characters: $, -, ^, ., and _
To edit a role:
1. Access Storage Essentials through one of the menu options, such as Options > Storage
Essentials > Email Settings.
2. In the upper-right corner, click Security > Roles.
3. Click the Edit ( ) button.
4. Make the desired changes:
To edit the name of the role, change the name in the Role Name box. The name can contain
spaces, but it cannot be longer than 256 characters.
To edit the description of the role, change the description in the Description box. The
description cannot be more than 1024 characters.
To change the access level, change the options selected in the table.
Full Control — Lets you view and modify the record for the element (Asset Management
tab) and perform provisioning.
Element Control — Lets you view and modify the record for the element (Asset
Management tab).
View — Lets you view element properties.
See ”Options for Restricting a Role” on page 352.
5. Select the features you want a user to be able to access.
See ”Management Server Components” on page 9 for more information about these features.
6. Click OK.
Deleting Roles
Keep in mind the following:
A role cannot be deleted if it contains a user.
Only users belonging to the Domain Administrator role can delete roles.