Create a Post
cancel
Showing results for 
Search instead for 
Did you mean: 
Ted_Serreyn
Contributor

cloud SMP role definitions

OK so I am finally getting back to re-evaluating cloud SMP for my users that are purchasing 1500 appliances.

 

I would like a user to be able to login and only see his devices/plans/roles on the cloud SMP.  He should not be able to see any other users gateways.

At this time I am not worried about the user seeing logs for other gateways.

 

Is this even possible?  I am trying to filter using the Intersects(gateways, CurrentUser.gateways), however I must not be giving enough access, it appears that we need access to user and all gateways to see this.  This is from the SMP 12.30 Admin guide P111?

 

Anyone ever do this kind of access role?  I am trying to understand all the fields that we could match.

 

Is it possible to match on a user field, for example user->custom field->UserGroup access and gateway->custom field -> GWgroup, then give access if CurrentUser.UserGroup  == Gateway.GWgroup?

Cloud SMP 12.30

 

 

0 Kudos
4 Replies
PhoneBoy
Admin
Admin

From what the experts tell me, this is not possible with SMP currently.
You can't give access to specific gateways, only specific actions within the SMP with apply to all gateways.
The only way to achieve this at the moment is for the user to connect to their gateway (either directly or via Reach My Device).

0 Kudos
Ted_Serreyn
Contributor

It is possible, we have done it.  The key is the access roles rule for Gateways.  Matches(name,"gwprefix.+")

G_W_Albrecht
Legend
Legend

Every user buying a 1500 gets one Cloud Management license for it included in the deal. So he has his own Cloud Management and therefore will see no other GWs.

0 Kudos
Ted_Serreyn
Contributor

And why would I want every customer that needs help managing their firewall in their own SMP?  That kind of defeats the purpose.  I don't want to login to every firewall, so I want to use SMP.  Because of this I don't want to login to every different SMP portal.

I want to work smarter, not harder.

0 Kudos