Master Administrator
If you have been granted the Master Administrator role you will have full access to all the resources of the Visual Guard tools
- The Master Administrator will be assigned the following permission sets by default:
Description | Remarks |
Auditor permissions | This option allows to access to the repository in read only mode and to consult the event log. |
Deployer permissions | This option allows to deploy the application. |
Developer Deployer permissions | This option allows deploying, editing applications, permissions, users and roles but not the repositories. |
Developer Permissions | This option allows to create application and defining roles, permissions, permission sets. |
- The Master Administrator will be assigned following permissions by default:
Description | Remarks |
Applications\Can Create Applications | This permission allows creating a new application |
Applications\Can Delete Applications | This permission allows deleting an application |
Applications\Can Deploy Application | This permission allows deploying an application |
Applications\Can Read All Application | This permission gives you the right to read all applications. |
Applications\Can Read Application | This permission gives you the right to read applications for which you have the role “Membership Manager” |
Applications\Can Update Application | This permission gives you the right to update an application. |
Audit and Reporting\Can Edit Event Log Category | This permission gives you the right to edit event log category |
Audit and Reporting\Can Generate Documentation | This permission gives you the right to generate documentation. |
Audit and Reporting\Can Read Event Log | This permission gives you the right to read an Event Log. |
Groups\Can Create Group | This permission gives you the right to create a group. |
Groups\Can Delete Group | This permission gives you the right to delete a group. |
Groups\Can Read All Groups | This permission gives you the right to read all groups. |
Groups\Can Read Group | This permission gives you the right to read groups that have been assigned to you. |
Permissions\Can Create Permission | This permission gives you the right to create permission. |
Permissions\Can Delete Permission | This permission gives you the right to delete a permission. |
Permissions\Can Read Permission | This permission gives you the right to read a permission. |
Permissions\Can Update Permission | This permission gives you the right to update a permission. |
Permission Sets\Can Create Permission Set | This permission gives you the right to create a permission set. |
Permission Sets\Can Delete Permission Set | This permission gives you the right to delete a permission set. |
Permission Sets\Can Read Permission Set | This permission gives you the right to read a permission set. |
Permission Sets\Can Update Permission Set | This permission gives you the right to update a permission set. |
Repository\Can Delete Repository | This permission gives you the right to delete a repository |
Repository\Can Deploy Repository | This permission gives you the right to deploy a repository |
Repository\Can Update Password Policy | This permission gives you the right to update a password policy. |
Repository\Can Update Repository | This permission gives you the right to update a Repository. |
Roles\Can Create Application Role | This permission gives you the right to create an application role. |
Roles\Can Create Shared Role | This permission gives you the right to create a shared role |
Roles\Can Create System Role | This permission gives you the right to create a system role |
Roles\Can Delete Application Role | This permission gives you the right to delete an application role |
Roles\Can Delete Shared Role | This permission gives you the right to delete shared role |
Roles\Can Delete System Role | This permission gives you the right to delete system role |
Roles\Can Grant Revoke Permission Sets To Application Roles | This permission gives you the right to grant or revoke the permission sets of the application roles. |
Roles\Can Grant Revoke Permission Sets To Shared Roles | This permission gives you the right to grant or revoke the permission sets of the shared roles. |
Roles\Can Create Application Role | This permission gives you the right to create an application role. |
Roles\Can Grant Revoke Application Roles To Groups | This permission gives you the right to grant or revoke application roles to groups. |
Roles\Can Grant Revoke Application Roles To Users | This permission gives you the right to grant or revoke application roles to users. |
Roles\Can Grant Revoke Shared Roles To Groups | This permission gives you the right to grant or revoke shared roles to groups |
Roles\Can Grant Revoke Shared Roles To Users | This permission gives you the right to grant or revoke shared roles to users |
Roles\Can Grant Revoke System Roles To Groups | This permission gives you the right to grant or revoke system roles to groups |
Roles\Can Grant Revoke System Roles To Users | This permission gives you the right to grant or revoke system roles to users |
Roles\Can Read Application Role | This permission gives you the right to read an application role. |
Roles\Can Read Shared Role | This permission gives you the right to read a shared role. |
Roles\Can Read System Role | This permission gives you the right to read a system role |
Roles\Can Update Application Role | This permission gives you the right to update an application role |
Roles\Can Update Shared Role | This permission gives you the right to update a shared role |
Roles\Can Update System Role | This permission gives you the right to update a system role |
Users\Can Approve Pending Users | This permission gives you the right to approve or deny users |
Users\Can Assign Remove Users To Groups | This permission gives you the right to assign or remove users to the group |
Users\Can Create User | This permission gives you the right to create an user |
Users\Can Delete User | This permission gives you the right to delete an user |
Users\Can Lock Unlock User | This permission gives you the right to lock or unlock an user |
Users\Can Read All Users | This permission gives you the right to read all users |
Users\Can Read User | This permission gives you the right to read an user |
Users\Can Update User | This permission gives you the right to update an user |
ADFS\ Can Create ADFS Server | This permission allows creating a new ADFS Server |
ADFS\ Can Delete ADFS Server | This permission gives you the right to delete an ADFS Server |
ADFS\ Can Update ADFS Server | This permission gives you the right to update an ADFS Server |
See Also:
- Special Roles
- Impact of granting multiple roles (missing mink)
- Special Roles & Permission Matrix