Modifying Roles

You can modify user roles from the Users tab in Infrastructure Classic Console or Applications Console.

Note that:
  • You can assign multiple roles to a user. Predefined Cloud Account roles are available for you to choose from.

  • You assign the appropriate role to a user according to the service entitlement and applications they are allowed to access. For example, for a user performing Compute operations, you would assign the Compute.Compute_Operations role.

To modify the roles assigned to a user:
  1. Sign in to Applications Console or Infrastructure Classic Console.

    Sign in to the Applications Console if you want to work with Oracle Cloud Applications. Sign in to Infrastructure Classic Console if you want to access Oracle Cloud infrastructure and platform services. If you see Infrastructure Classic at the top of the page when you sign in to Oracle Cloud, then you are using Infrastructure Classic Console and your subscription does not support access to the Oracle Cloud Console.

    Be sure to specify the appropriate identity domain.

  2. Open the navigation menu. Under Account Management, click Users.
    The User Management page appears.
  3. Click action icon Action for the user account you want to change and select Edit.

  4. The User Details page is displayed.
  5. Click the Roles tab.
    The default roles assigned to the selected user when the account was created are displayed under the various categories.
  6. Click the text boxes under the service entitlements or applications to select additional roles for the user. If available, the additional available roles are displayed when you click the text boxes.
  7. Select the role you wish to assign.
  8. To remove a role for the user, click the x icon. You can’t remove a role assigned to user in a group. Such roles are read-only.

    Note:

    If a user is assigned a Cloud Account Administrator role, then you can’t remove the entitlement roles for the user. However, you can remove the Cloud Account Administrator role for the user without removing other entitlement roles.

  9. Go back to the User Details page and save the changes.
The role assignments are saved and updated immediately.
For a more complex role management including assigning other administrative privileges, see Adding or Removing a User Account from an Administrator Role in Administering Oracle Identity Cloud Service.