Skip to main content

Manage access to cloud firewall

Access to cloud firewall is regulated by:

Access within the role model

Learn more about access within the role model in the Access management in Servercore products instruction.

member

User with full access to all services.Access management is unavailable for users, service users, user groups, and federations.

Access areas
  • Account;
  • Project
Who can be assigned
  • Users;
  • service users;
  • user groups
Available operations with cloud firewall

In the Account access area:

  • viewing the list of cloud firewalls and information about them in all projects;
  • managing cloud firewalls in all projects

In the Project access area:

  • viewing the list of cloud firewalls and information about them in the selected project;
  • managing cloud firewalls in the selected project

iam.admin

User with access to user management and without access to services and billing.Cannot manage their account: modify permissions, manage notifications, delete the user.The first user with the iam.admin role is created by the Account Owner.

Access areasAccount
Who can be assigned
  • Users;
  • service users;
  • user groups
Available operations with cloud firewall

iam.viewer

A user with access to view everything that the iam.admin manages.

Access areasAccount
Who can be assigned
  • Users;
  • service users;
  • user groups
Available operations with cloud firewall

reader

A user with access to view everything that the member manages in the same access area.

Access areas
  • Account;
  • Project
Who can be assigned
  • Users;
  • service users;
  • user groups
Available operations with cloud firewall

In the Account access area:

  • viewing the list of cloud firewalls and information about them

In the Project access area:

  • viewing the list of cloud firewalls and information about them in the selected project

vpc.admin

A user with access to managing cloud platform networks (private networks and subnets, public subnets and public IP addresses, cloud routers), cloud firewalls, security groups, and cloud load balancers.

Access areas
  • Account;
  • Project
Who can be assigned
  • Users;
  • service users;
  • user groups
Available operations with cloud firewall

In the Account access area:

  • viewing the list of cloud firewalls and information about them in all projects;
  • managing cloud firewalls in all projects

In the Project access area:

  • viewing the list of cloud firewalls and information about them in the selected project;
  • managing cloud firewalls in the selected project

vpc.viewer

A user with access to view everything that the vpc.admin manages in the same access area.

Access areasAccount
Who can be assigned
  • Users;
  • service users;
  • user groups
Available operations with cloud firewall

In the Account access area:

  • viewing the list of cloud firewalls and information about them in all projects

In the Project access area:

  • viewing the list of cloud firewalls and information about them in the selected project

vpc.network_security.admin

A user with access to managing traffic restriction tools in cloud platform networks — cloud firewalls, security groups.

Access areas
  • Account;
  • Project
Who can be assigned
  • Users;
  • service users;
  • user groups
Available operations with cloud firewall

In the Account access area:

  • viewing the list of cloud firewalls and information about them in all projects;
  • managing cloud firewalls in all projects

In the Project access area:

  • viewing the list of cloud firewalls and information about them in the selected project;
  • managing cloud firewalls in the selected project

vpc.network_security.user

A user with access to view everything that the vpc.network_security.admin manages in the same access area.

Access areas
  • Account;
  • Project
Who can be assigned
  • Users;
  • service users;
  • user groups
Available operations with cloud firewall

In the Account access area:

  • viewing the list of cloud firewalls and information about them in all projects

In the Project access area:

  • viewing the list of cloud firewalls and information about them in the selected project

vpc.network_security.viewer

A user with access to view everything that the vpc.network_security.admin manages in the same access area.

Access areas
  • Account;
  • Project
Who can be assigned
  • Users;
  • service users;
  • user groups
Available operations with cloud firewall

In the Account access area:

  • viewing the list of cloud firewalls and information about them in all projects

In the Project access area:

  • viewing the list of cloud firewalls and information about them in the selected project