[en] You can create custom role definitions to control access to all areas of Nerdio Manager. Custom roles define the scope and level of access and can be assigned to users and security groups. Users can access modules in read-only or manage mode.
カスタムロール定義を作成するには:
-
システム > RBAC > 定義 に移動します。
-
[新しい定義] を選択します。
-
次の情報を入力してください。
-
名前 カスタムロールの名前を入力します。
-
説明カスタムロールの説明を入力します。
-
モジュール適用可能なすべてのモジュールとモードを選択します。
表7
モジュール
モード
[en] OBSERVABILITY
[en] Insights
-
[en] Read Only: Provides users with read-only access to the Insights dashboards.
-
[en] Manage
[en] Observability > Advisor > Modeler
-
[en] Read Only
-
[en] Manage
[en] Observability > Advisor > Recommendations
-
[en] Read Only
-
[en] Manage
[en] Observability > Advisor > Rules
-
[en] Read Only
-
[en] Manage
[en] AVD & SESSIONS
[en] Workspaces
-
[en] Read Only
-
[en] Manage
-
[en] Manage hosts: Allow users to manage hosts within assigned host pools.
-
[en] Manage assignments: Allow users to manage assignments within assigned host pools.
-
[en] Manage sessions: Allow users to manage sessions within assigned host pools.
-
[en] Manage power state: Allow users to manage the power state of the sessions within assigned host pools.
-
[en] Manage drain mode: Allow users to manage the drain mode of the sessions within assigned host pools.
-
[en] Run scripted actions: Allow users to run scripted actions within assigned host pools.
-
[en] Console Connect Operator: Allows users to manage Console Connect roles.
[en] Desktop images
-
[en] Read Only
-
[en] Manage
[en] App attach
-
[en] Read Only
-
[en] Manage
[en] Portal
-
[en] Manage
[en] ENDPOINT MANAGEMENT
[en] Intune (Global Roles)
-
[en] Read Only
-
[en] Manage
[en] Intune (Read Only Roles)
-
[en] Read Devices
-
[en] Read Policies
-
[en] Read Applications and App Policies
-
[en] Read Update Rings and Policies
-
[en] Read Scripts
-
[en] Read BitLocker
-
[en] Read Antivirus
-
[en] Read User Experience
-
[en] Read User Groups
-
[en] Read Device Location
-
[en] Read Approvals
[en] Intune (Manage Roles)
-
[en] Manage Devices
-
[en] Manage Devices Privileged
-
[en] Manage BitLocker
-
[en] Manage Antivirus
-
[en] Manage Device Groups
-
[en] Manage User Groups
-
[en] Manage Locate Device
-
[en] Manage Policies
-
[en] Manage Applications and App Policies
-
[en] Manage Update Rings and Policies
-
[en] Console Connect Operator
-
[en] Manage Approvals
-
[en] Manage Scripts
-
[en] Manage Microsoft licenses
[en] Intune > Windows 365
-
[en] Read Only
-
[en] Manage
[en] APP MANAGEMENT (UAM)
[en] UAM > Deployment policies
-
[en] Read Only
-
[en] Manage
[en] UAM > App groups
-
[en] Read Only
-
[en] Manage
[en] UAM > Unified catalog
-
[en] Read Catalog
-
[en] Manage Catalog: Allow users to manage UAM catalogs and perform tasks such as importing and deploying apps.
-
[en] Manage Shell App Parameters: Allow users to manage Shell App parameters.
[en] AUTOMATION
[en] Scripted actions
-
[en] Read Only
-
[en] Manage
[en] Scripted sequences
-
[en] Read Only
-
[en] Manage
[en] Scripted sequences > executions
-
[en] Read Only
-
[en] Manage
[en] Task worker analytics
-
[en] Read Only
-
[en] Manage
[en] STORAGE
[en] Cloud desktops > Storage > Azure Files
-
[en] Read Only
-
[en] Manage
-
[en] Manage Profiles: Allow users to manage FSLogix profiles without the need for an active user session and without the need to provide full control to the file share.
[en] Cloud desktops > Storage > Azure NetApp Files
-
[en] Read Only
-
[en] Manage
[en] Cloud desktops > Storage > Log Analytics
-
[en] Read Only
-
[en] Manage
[en] OPERATIONS
[en] Monitoring
-
[en] Read Only
[en] Logs
-
[en] Read Only
[en] Migrate
-
[en] Read Only
-
[en] Manage
[en] Secure variables
-
[en] Read Only
-
[en] Manage
-
[en] Show Secret
-
-
-
すべての希望する情報を入力したら、OKを選択します。
注記
注意: 定義のリストからカスタムロールを編集または削除できます。
詳細については、「Nerdio Manager におけるロールベースのアクセス制御 (RBAC)」を参照してください。
コメント (0件のコメント)