Roles and Permissions
Table of Contents
Expand all | Collapse all
- Strata Multitenant Cloud Manager
- First Time Setup
-
- Monitor Status of Services through the ASC Support View
- Monitor Performance of Tunnel Status through the ASC Support View
- Monitor Performance of Auto Scaling through the ASC Support View
- Monitor Performance of Throughput through the ASC Support View
- Monitor Performance of the System through the ASC Support View
- View Licenses through the ASC Partner Portal
- View Status of Upgrades through the ASC Support View
- Manage Multitenant Reports
Roles and Permissions
ThePrisma SASE App for ServiceNow uses specific user roles to ensure that each user has
the appropriate level of access to the app's features and data. The following table
lists the key roles available in the app and describes their associated permissions and
responsibilities.
User Roles and Permissions
| User | Role | Permission | Description |
| System Administrator | admin |
| The user with admin roles will install and configure the application. |
| Credential Admin | credential_admin |
| Users with the credential_admin role can manage the Prisma SASE Configuration and ServiceNow Configuration credentials. |
| Notification Profile User | x_paan_prisma_sase.notification_profile_user |
| Users will be able to create, update and delete Notification Profiles. |
| ITIL Admin | itil_admin |
| Users with this role can manage ITIL users, assignment groups, and ITSM configurations. |
| ITIL User | itil |
| Users with this role can create, update, and manage incidents. |
| Prisma SASE NOC Incidents User | x_paan_prisma_sase.prisma_sase_noc_incidents_user |
| Users with the NOC incidents role will be able to view Prisma SASE Network Incidents. |
| Prisma SASE SOC incident user | x_paan_prisma_sase.prisma_sase_soc_incidents_user |
| Users with the SOC incidents role will be able to view all other incidents which are not NOC incidents |
| Multi Tenant Dashboard User | x_paan_prisma_sase.multi_tenant_dashboard_user |
Dashboards
View all tenant-level dashboards in the
application.
| Users with a Multi Tenant Dashboard User role can view multi-tenant dashboards, including Tenant Hierarchy, Threats, Applications, Licenses, and Tenant Resources. |
| Import user | x_paan_prisma_sase.import_user |
Workflow Settings
| A User with this role can create new automation workflow entries i.e user can upload template for any of the workflows |
| Workflow admin user | x_paan_prisma_sase.workflow_admin |
Workflow Settings
| User with this Role Can Approve/ reject |
| Onboarding New Tenant Workflow user | x_paan_prisma_sase.onboarding_new_tenant_workflow_user |
Workflow Settings
| User with this role can create Onboarding New Tenant Workflow via the UI form |
| Infrastructure User | x_paan_prisma_sase.infrastructure_workflow_user |
Workflow Settings
| User with this role can create Infrastructure Workflow via the UI form |
| Mobile User- User | x_paan_prisma_sase.mobile_users_result_viewer |
Workflow Settings
| User with this role can create Mobile User workflow via the UI form |
Roles Required to Access Application Menus
| Application Menu | Required Roles |
| Basic Settings |
|
|
Incident settings
|
|
|
Incidents
|
|
|
Dashboards
|
|
|
Support & Logs
|
|
|
Workflow Settings
|
|
|
Workflow Settings
|
|
|
Workflow Settings
|
|
|
Workflow Settings
|
|
|
Workflow Settings
|
|
|
Workflow Settings
|
|
|
Incident settings
|
|
|
Automated Workflows
|
|
|
Automated Workflows
|
|
|
Automated Workflows
|
|
|
Automated Workflows
|
|
|
Automated Workflows
|
|
|
Automated Workflows
|
|
|
Automated Workflows
|
|
|
Automated Workflows
|
|
|
Incidents
|
|
|
Customer Support Ticket
|
|
Roles Available for Tenant Assignment
- x_paan_prisma_sase.notification_profile_user
- x_paan_prisma_sase.prisma_sase_noc_incidents_user
- x_paan_prisma_sase.multi_tenant_dashboard_user
- x_paan_prisma_sase.support_user
Roles Restricted from Tenant Assignment
- x_paan_prisma_sase.incident_severity_mapping_user
- x_paan_prisma_sase.incident_state_mapping_user
- x_paan_prisma_sase.domain_company_mapping_user