Security Policy - View Only Role

Prev Next

If you would like to grant user permissions to access the Real-Time Console and view systems and real-time performance data, you will first need to create a Security Role for that user or an AD Group. In our example, we use the name "View Only".

To create the "View Only" Security Role:

  1. Open the Security Policy pane at the bottom of the Console.
  2. In the Home ribbon, click the Manage Roles button.
  3. Click Add New Role...Add New Role button
  4. Under Role Name, enter View Only. Click the Add Users/Groups button to assign an Active Directory group to this security role.
  5. Click the Search button and select the AD group that includes the domain users for which you want to grant view-only permissions. Click OK to add the new role.
    AD User Group with Search button
  6. The new role "View Only" is now assigned to the AD group "AD_CUViewOnlyRole". Click OK to finish the role configuration.
    New Role Added as AD_CUViewOnlyRole
  7. The View Only role is now added to the list along with the other default groups ControlUp Admins, Helpdesk, and Automation Admins. Click OK and wait until the changes are applied to the Security Policy Pane.
    View Only role
  8. In the Security Policy Pane, the new column "View Only" is added and you can start to assign permissions for this new role.
    View Only Role Added

Actions to Set Permissions

Set the permission Allow to the following actions:

Perform organization-wide actions

Recommended actions:
Launch Controllers
Launch Controllers icon

View Incidents
View Incidents icon

View Events
View Events icon

View All Hypervisors
View All Hypervisors icon

Use Shared Credentials
Use Shared Credentials icon

Connect to Data Source
Connect To Data Source icon

Optional actions to set the Allow permission:

Run Machines Actions

Connect to Windows Machine
Connect To Windows Machine icon

Connect to Linux Machine
Connect To Linux Machine icon

Event Viewer on Remote Computer**
Event Viewer On Remote Machine icon

Monitor File System**
Monitor File System icon

Installed Software

Display Installed Software**
Display Installed Software icon

Display Installed Updates**
Display Installed Updates icon

Registry

Monitor Machine Registry**
Monitor Machine Registry icon

Services

Monitor Services**
Monitor Services icon

** Optional: Other "View Only" settings that may require remote admin privileges.