CB Defense: Why are Custom RBAC Roles Missing When Viewed by Some Users?
search cancel

CB Defense: Why are Custom RBAC Roles Missing When Viewed by Some Users?

book

Article ID: 288922

calendar_today

Updated On:

Products

Carbon Black Cloud Endpoint Standard (formerly Cb Defense)

Issue/Introduction

Why are Users with assigned permissions to manage roles and users not able to view all custom RBAC roles?

Environment

  • CB Defense PSC Console: March '19 Release and later (0.45)

Resolution

Users can only assign roles and permissions that are assigned to their own role

Additional Information

  • RBAC permissions are hierarchical in that a User can only assign permissions that their role has been assigned
  • For example, a User that is assigned permission to Manage Roles and Users but not Connectors cannot assign permission to manage Connectors
  • That same User would also not be able to assign roles that include permission to manage Connectors