Striim 3.9.7 documentation

Roles

Roles associate permissions with users and namespaces. A role may contain multiple permissions and multiple roles.

The default system-level roles that exist in a new Striim installation are:

role

A user with this role:

Global.admin

is a superuser, that is, may perform any action, including managing users, roles, applications, and clusters. By default, only users with this role have access to the admin namespace.

Global.appadmin

is automatically granted the admin role for every namespace created.

Global.appdev

is automatically granted the dev role for every namespace created.

Global.appuser

is automatically granted the enduser role for every namespace created.

Global.systemuser

This role is automatically granted to new users. By default, it allows use of types, property templates, and deployment groups in the Global namespace.

Global.uiuser

This role is automatically granted to new users. By default, it allows access to the Apps, Dashboard, Flow Designer, Monitor, and Source Preview pages.

The following roles are automatically created for each namespace:

role

A user with this role:

<namespace>.admin

can perform any action within the namespace.

<namespace>.dev

can perform any action within the namespace except DROP, GRANT, and REVOKE.

<namespace>.enduser

has read-only access to the namespace.

<namespace>.useradmin

can alter their own user account properties such as the password. This role is created only by CREATE USER, not by CREATE NAMESPACE.