Online Help > Management > Security

Role Management

Description

 

BadgeInfo48x48

Active Directory groups must be created before creating Roles.

 

Roles in Devolutions Password Server are mainly used to reduce the time taken to manage users. The management of permissions granted to roles are quite similar to the corresponding notions for users, but instead of a single user, they apply to all users to which you've assigned the role. This allows the server to link an Active Directory (AD) group to a role in Devolutions Password Server. Once a domain user log in the Devolutions Password Server data source, their user account will be created if needed and users rights will be controlled by the defined groups.

 

Manage Roles in Devolutions Password Server Console

Manage Roles in Devolutions Password Server Console

 

Manage Roles in Remote Desktop Manager

Manage Roles in Remote Desktop Manager

 

Roles management dialog

Roles management dialog

 

Settings

Create Roles

To create a new role in your data source click on Add Role.

 

Role Management - Add Role

Role Management - Add Role

 

Role Management Setttings

General

Role Management - General

Role Management - General

 

OPTION

DESCRIPTION

Name

Enter a name for your new Role. The ellipsis button on the right allows to browse the Active Directory structure to select an Active Directory Group as the name of the new Role.

Description

Enter a short description of your new Role.

Administrator

If enabled, the Role is set with Administrator privileges and all users bind to this role will inherit Administrator privileges in Devolutions Password Server.

 

Privileges

Role Management - Privileges

Role Management - Privileges

 

OPTION

DESCRIPTION

Allow reveal password

Allows the user to use the Reveal Password command.

View information section

Allows the user to see the content of the Information tab for all sessions.

View shared logs

Allows the user to see the content of the Logs that applies to a session.

Import

Allows the user to Import sessions (Clipboard - Paste as well).

The import menu (File - Import) and the import feature in the context menu will be grayed out if the option is not active.

Export

Allows the user to Export sessions (Clipboard - Copy as well).

The export menu (File - Export) and the export feature in the context menu will be grayed out if the option is not active.

 

Security Groups

clip10430

 

OPTION

DESCRIPTION

Rights

Allows Add, Edit and/or Delete rights or blocks Add in root right.

Security Groups

To learn more about Permissions please see the Permissions topic.

 

Repositories

Role Management - Repositories

Role Management - Repositories

 

OPTION

DESCRIPTION

Repositories

Consult Repositories topic for more information.

 

Settings

Allow the user to enable the Offline Mode on the data sources. This also depends on the data source being configured to allow it. You can choose between:

 

Role Management - Settings

Role Management - Settings

 

OPTION

DESCRIPTION

Disabled

No offline cache allowed for that user.

Read-only

A read-only cache is allowed for Advanced Data Sources.

Read/Write

An advanced cache, with change synchronization, is allowed for Advanced Data Sources.

 

Email Notifications

Email Notifications are used to send email notifications to specific users.

 

Role Management - Email Notifications

Role Management - Email Notifications

 

OPTION

DESCRIPTION

Username

If enabled, will send notification to the user about modifications on this role. It could be set on specific operation (Edit and/or Delete).