Dashboard Management
In this menu item, you can create, remove, or assign new permission profiles for the Cloud Services Portal to users. The standard permission profiles can also be viewed.
List Profiles
Two standard profiles are available:
- (A) User-Adm - Can manage all users of this client and has access to all panels
- (B) User has access to the S3 Panel and cannot manage users.
To list the profile details, navigate to Dashboard Management => Profiles.
- Profile - Name of the profile
- Permissions - Lists all permissions of this profile, including a description
- Users - Shows which users are using this profile
- Actions - Here you can add a description to a profile or delete the profile.
- Delete - Use this button to delete a self-created profile
- Filter - Here you can filter for any information
Online users
This area lists the logged-in users of the client.
- (A) A user's logout can be enforced using the Force logout button.
- (B) Clicking the follow icon lists a detailed list (C) of the user's API calls.
Manage Conditional Access
In this area, you can further restrict user access to the Cloud Services Portal to increase security. This is achieved by activating one or more access filter rules. The following Conditional Access types are available:
(A) Access times - Allows restricting access based on days and times. (B) SourceIP - Allows restricting access based on the source IP address or subnet.
Note
By default, access (without Conditional Access Rules) is not restricted.
Creating a Conditional Access Rule
For example, to restrict a user's access time to Monday - Friday, 08:00 to 18:00, please create the following Conditional Access Rule:
- First, click the plus sign (+) next to the user for whom you want to create Conditional Access Rules.
- To create a Conditional Access Rules for this user, first select the filter type Access times (1).
- Now enter the desired Access time parameters for the Access Rule (2) and (3).
- Now add this Access Rule to the user by clicking the Add Filter(4) button.
- Repeat the previous two steps if you want to create more Access Rules.
- Finally, click the Save(5) button so that the Access Rules are saved!
Warning
The rules become immediately active after you click the "Save" button! Therefore, check the rules before applying them, as you can lock yourself out.
Example - Restricting Source IP
For example, to restrict a user's access to the PublicIP Address 178.158.100.100/32, please create the following Conditional Access Rule:
Example - Restricting Access Time and Source IP
You can also combine multiple Conditional Access Rules as needed. In this example, a time and SourceIP restriction is combined. Please pay attention to the correct linking logic (AND/OR) in the Operator column.
Copying a User's Conditional Access Rules
Once you have created a set of Access Rules for a user, you can easily transfer this rule set to another user.
- To do this, click the copy symbol (1) next to the user
- Now check the target users who should receive these Access Rules (2)
- Complete the process by clicking the copy(3) button.
Warning
Existing Access Rules of the target users will be overwritten or deleted by the copy process.
Change Profile
If you want to assign a different permission profile to a user, please proceed as follows:
Navigate to Dashboard Management => Manage permissions.
- Click on permissions (1) for the corresponding user
- The permission sections (3) for this user are displayed. In our example, the user has the User (2) profile.
- Now select the desired profile (2) and confirm your choice with the Set profile to User button.
Warning
If you assign a profile to your own user (Client-Adm) that does not have user management permissions, you may lock yourself out of this permission. In this case, contact your Enterprise Partner.
Note
If you want to assign a profile to multiple users, please click the Set Users Profile button.
Custom Permissions
You can individually customize the permissions of a user profile. This will give the user the Custom Permissions profile. To do this, proceed as follows:
- Navigate to Dashboard Management > Manage permissions.
- Click on permissions for the corresponding user
- The permission sections for this user are displayed.
- Now switch to the corresponding Permission section that you want to customize. In our example, Usage dashboard (1)
- Now grant the desired permissions (2)
- If you now confirm the customized permissions with the Save permissions on users(3) button, the changes will only be saved for this user, and they will receive a Custom Permissions profile.
Update Profile
If you want to save the customized permissions (see Custom Permissions) in the User profile used by the user, confirm this with the Update profile (4) button. In this case, all users using this profile will receive the new permissions!
Create Profile
To create a new profile, please proceed as follows:
Navigate to Dashboard Management => Manage permissions.
- Click on permissions for a user with a profile that serves as a template
- The permission sections for this user are displayed.
- Now switch to the corresponding Permission section that you want to customize for the new profile. In our example, Usage dashboard (1)
- Now grant the desired permissions (2)
- To save the profile with the customized permissions as a new profile, please click the Save permissions as a new profile(5) button.
- Now enter a Profile Name and a Description for the new profile in the input mask and confirm the input with the create profile button.
Note
The user's profile remains unchanged by creating the new profile.