Skip to main content

Manage access to the basic firewall

Access to the basic firewall is governed by a role model that defines access within an account. For details, see the Access management in Servercore products instructions. You can view role capabilities across all products in the role reference.

member

A user with full access to all Servercore products. Has no access to managing users, service users, user groups, and federations.

Access scopes
  • account;
  • project
Can be assigned to
  • users;
  • service users;
  • user groups
Available operations with the basic firewall

In the Account access scope:

  • basic firewall management:

    • creating a basic firewall;
    • modifying a basic firewall (adding rules, changing rules, etc.);
    • deleting a basic firewall

In the Project access scope, basic firewall operations are unavailable

iam.viewer

A user with view access to everything managed by iam.admin.

Access scopesAccount
Can be assigned to
  • users;
  • service users;
  • user groups
Available operations

iam.admin

A user with access to user management and no access to services or billing. Cannot manage their own account: change permissions, manage notifications, delete the user. The first user with the iam.admin role is created by the Account Owner.

Access scopesAccount
Can be assigned to
  • users;
  • service users;
  • user groups
Available operations with the basic firewall

reader

A user with view access to everything managed by member within the same scope.

Access scopes
  • account;
  • project
Can be assigned to
  • users;
  • service users;
  • user groups
Available operations with the basic firewall

In the Account access scope:

  • viewing the list of basic firewalls and information about them

In the Project access scope, basic firewall operations are unavailable

dedicated.admin

User with access to basic firewall management.

The dedicated.admin role also grants access to managing:

Access scopes
  • account;
  • project
Can be assigned to
  • users;
  • service users;
  • user groups
Available operations with the basic firewall

In the Account access scope:

  • basic firewall management:

    • creating a basic firewall;
    • modifying a basic firewall (adding rules, changing rules, etc.);
    • deleting a basic firewall

In the Project access scope, basic firewall operations are unavailable

dedicated.viewer

A user with view access to everything managed by dedicated.admin within the same scope.

Access scopes
  • account;
  • project
Can be assigned to
  • users;
  • service users;
  • user groups
Available operations with the basic firewall

In the Account access scope:

  • viewing the list of basic firewalls and information about them

In the Project access scope, basic firewall operations are unavailable