Cisco APIC Security Configuration Guide, Release 6.2(x)

PDF

Cisco APIC Security Configuration Guide, Release 6.2(x)

Creating a Custom Role with Custom Privileges

Want to summarize with AI?

Log in

Configures a custom role and assigns a specific set of privileges to that role. This process enables administrators to define granular access control based on organizational requirements.


Before you begin

Refer to the set of predefined roles and privileges listed in AAA RBAC Roles and Privileges to determine which privileges should be available in the custom role. If you need read or write access to a managed object (MO) that is not exposed in a predefined privilege, you can configure a custom privilege, as described in Configure a custom privilege .

Procedure

  1. On the menu bar, choose Admin > AAA .

  2. In the Navigation pane, click Security .

  3. In the Work pane, select the Roles tab.

  4. In the Work pane, click on the Actions icon drop-down list and select Create Role .

  5. In the Create Role screen, perform the following actions:

    1. In the Name field, type a name for the role.
    2. In the Description field, type a description.
    3. Click Add Privileges . In the Select Privileges window that is displayed, select one or more privileges for the role by selecting the required check-box(es).
    4. Click Select (on the Select Privileges window).
  6. Click Save .

What to do next

If you selected a custom privilege, such as custom-privilege-1 , follow the steps in Configure a custom privilege to choose the managed objects (MOs) that will be exposed with this custom privilege.