Managing drift management permissions
Set up permissions for the BMC Configuration Drift Management application, including access to different functions of drift management.
The following points explain the drift management permissions groups:
- You can grant flexible role-based permissions to specific areas of the Drift Management console.
- Permission groups are used to grant users access to specific consoles and modules within drift management. They are also used for notifications. In addition to inheriting the instance access within BMC Helix CMDB, drift management lets you specify access to various drift management components (drift reports, baselines, targets, jobs, qualification sets, include sets and exclude sets) on the basis of group membership.
- To give users access to drift management, you first must create a AR System user for each of them on the AR System server where drift management is installed. You can then make those users members of multiple groups and assign those groups to roles that allow them access to different parts of the application and its data.
Task | Reference |
---|---|
Understand the default permission groups available for drift management and BMC Helix ITSM permission groups that are important for integrating drift management with Change Management and Incident Management. | |
Understand instance permissions with help of examples and define instance permissions to support multitenancy. | |
Enable drift management to support multitenancy without using Change Management and Incident Management by creating groups. | |
Learn how to create users for drift management in the following cases:
|
If you have Change Management and Incident Management installed, configure drift management permissions by using the Application Administration Console. The configuration forms are available only to AR System administrators and application administrators.
Use the forms accessed from the Custom Configuration tab to go beyond the standard configuration.