User types and roles
User types and roles
User access rights are delimited through:
- user types which determine where the account will be used — in the control panel or for authorized access via APIs and automation tools;
- roles that define accesses within each type of user.
Only users with the roles of Account Owner or User Administrator are allowed to add and edit users.
You can also add users to groups to manage multiple users as a single user.
User types and roles are temporarily unsupported in network and additional services.
You can work with users and roles in the control panel, with the help of IAM API or Terraform.
User types
The user type is specified when adding a user and cannot be changed:
- control panel user — a user with an account in the control panel that is logged into the control panel and the authorization goes through two-step authentication through the mail and a phone number. He can write himself a prescription Servercore token (API key) for full access to Servercore product APIs;
- service user — a user with an account for program access via Servercore Product API and other automation tools. Has only a login and password. Does not have access to control panel;
- federated user — a user of the control panel who belongs to one of the federations and authenticates through SSO. Does not pass two-step authentication. The user is added already registered — he only needs to enter his full name at the first login. Email is mandatory. Does not have access to API.
Roles
Depending on user type it can be assigned one or more roles.
A role can be assigned individually to a user or to a user group.
Role comparison
Account
Billing
Services
Projects
Access keys
Tickets