Load Service Principals' Custom Security Attributes
24
Copy File to user drive
25
Copy File to user drive (including out-of-scope items)
26
Copy File to group/channel drive
27
Copy File to group/channel drive (including out-of-scope items)
28
Copy File to site drive
29
Copy File to site drive (including out-of-scope items)
30
Run Powershell Command Job
31
Run Custom Job
From the Dashboard, go to RBAC → Configuration
In Roles, click Create Role.
Enter a unique, meaningful name for the role and a description, which will be shown to assigned users.
Select the credentials you wish to use with this role. You can create a new one by clicking on the button ‘New Credentials…’ (see how to set up credentials).
In Options, select from the following:
Log access of modules with this role in User Activity Logs.
This option makes sapio365 log whenever a user with that role opens a module, not just when they save changes. These entries can then be found in the User Activity Logs, showing who accessed which module and when so you can audit viewing activity as well as modifications.
By default, sapio365 logs all changes saved by sapio365 users in the User Activity Logs.
Enforce this role upon user sign-in.
This option makes it mandatory for any assigned user to take on the role when they sign in to their sapio365 session.
Enforce ticketing on all save actions with this role.
This option makes adding ticket information mandatory for all save actions with this role.
Select sapio365 RBAC permissions to customize the role you are creating.
(Optional) The License Assignment Restrictions can be used to limit the number of licenses to manage. Learn more here.
The License Assignment Restrictions section is not available for multi-credential roles. You must select only 1 set of credentials at step #4.
Click OK to save the role, after which it will appear in the grid.
Assign users and scopes
The next step in sapio365 RBAC creation is to define the scope (which sets of users, groups, or sites the role can act on) and assign the users or groups who will be allowed to exercise those permissions.