Roles and permissions


BMC Helix AIOpsleverages BMC Helix Portal to provide single sign-on authentication for users.

As an administrator, you can create and edit users, user groups, and roles in BMC Helix Portal. You can assign any of the roles or permissions to users, such as creating, modifying, viewing, deleting, or managing objects in BMC Helix Portal. However, you cannot create new permissions.

As a BMC Helix Single Sign-On administrator, you can configure infinite user sessions for BMC Helix AIOps in the BMC Helix SSO Admin Console, so that your session remains active all the time. For information about how to configure this setting, see Configuring infinite user sessions.

The following video (2:46) provides an overview of permissions and how to assign them to roles in BMC Helix Portal:

icon_play.pngWatch the YouTube video about Assigning permissions to user roles in BMC Helix Portal.

 

Consult the following table to understand the default roles available in the product and the capabilities and permissions assigned to each role.

Important

In some organizations, these responsibilities are performed by site reliability engineering team (SRE). So, you might want to assign these permissions accordingly.

RolesResponsibilitiesPermissions
Application or ServiceResourcePermission
Important: In addition to the permissions listed here, by default, all users must be assigned the DSM Read Only role in BMC Helix Portal. For more information, see Setting up role-based access control.

Operator_new.png

Operator

  • View Services and individual service details
  • View service predictions
  • View and manage Situations
  • Run and request automations
  • Configure general settings such as setting a default landing page, enabling the dark theme for the console, or configuring the default data refresh interval for UI pages.
aiopspcaview
servicesview
situationsview
situationsmanage

Service designer.png

Service Designer

Important: For modeling service blueprints and services, you need additional permissions for viewing devices and groups in BMC Helix Operations Management. For more information, see Authorization profile.

aiopsservicesview
servicesmanage

Tenant admin.png

Tenant Administrator

All permissions

Vuln manager.png

Vulnerability Manager

aiopsoverviewview
servicesview
servicesmanage
Automation ConsoleVulnerabilityManage Scan
VulnerabilityView
VulnerabilityClose
VulnerabilityException View
VulnerabilityException Manage
VulnerabilityVulnerability Operation
VulnerabilityManage Category
VulnerabilityAssign Category
Security groupManage
Security groupView
SLAManage
SLAView
TagManage
ConnectorManage
ConnectorView

 

Tip: For faster searching, add an asterisk to the end of your partial query. Example: cert*