2.1.3 Users and Roles

A brief description of users, roles, groups and functions.

  • Users: Customers create users in Identity and Access Management (IAM) and can do the following:
    • Map them to existing groups
    • Create new groups to map them

    After users are created, they are synced from IAM to the Cloud Service.

    • Groups: Groups are seeded (available out-of-the-box) by your Cloud Service. Customers can also create new groups in IAM. After groups are created, they are synced from IAM to the Cloud Service. You can map the groups to roles using the subscribed Cloud Service.
    • Roles: Roles are seeded by the Cloud Service. Customers can also create new roles using the Cloud Service and assign existing functions to these new roles.
    • Functions: Functions are seeded by the Cloud Service. Customers cannot create new functions; however, they can use the existing functions.