Role Refresh Modes
Role refresh modes define how Roles are synchronized and updated in the security policy.
A Role is a grouping of users that interacts with data in Protegrity Data Security Platform. A Role can consist of users, groups, or a combination of both. It can be configured for Manual, Automatic, or Semi-Automatic retrieval of its members. Each Role is associated with specific data access privileges in the policy.
You can create, view, and manage Roles by navigating to Policy Management from the main menu, and choosing Roles & Member Sources.
To create a role:
On the ESA Web UI, navigate to Policy Management > Roles & Member Source > Roles.
Click Add New Role.
The New Role screen appears.
Enter a unique name for the role in the Name textbox.
Note: Ensure that the length of the role name does not exceed 55 characters.
Enter the required description for the role in the Description textbox.
In the Mode drop-down, select a refresh mode.
For more information about about mode types for a role, refer to section Role Refresh Modes.
If you want to apply this role to all members in all the member sources, click Applicable to all members. If enabled, the role is applied to all members in users or groups that do not belong to any other role.
Note: It is recommended to enable Applicable to all members option only for unauthorized user roles. Using it for authorized roles may result in unintentionally open access level to sensitive data.
Click Save.
Roles can be fully modified after they have been created.
To remove a Role:
On the ESA Web UI, navigate to Policy Management > Roles & Member Sources.
The Roles tab appears by default.
Select the name of the role from the list, and click the Delete action.
A confirmation dialog box appears.
Click OK.
A message Role has been deleted successfully appears.
Role refresh modes define how Roles are synchronized and updated in the security policy.
This section describes the steps required to add Members to a Role.
This section provides more information on synchronizing, listing, and removing members in Roles.
This section provides information on how to search for a user.
Was this page helpful?