<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>Identity and Access on Nirmata Documentation</title><link>https://docs.nirmata.io/docs/control-hub/identity-access/</link><description>Recent content in Identity and Access on Nirmata Documentation</description><generator>Hugo</generator><language>en</language><lastBuildDate>Mon, 01 Jan 0001 00:00:00 +0000</lastBuildDate><atom:link href="https://docs.nirmata.io/docs/control-hub/identity-access/index.xml" rel="self" type="application/rss+xml"/><item><title>Users and Roles</title><link>https://docs.nirmata.io/docs/control-hub/identity-access/users/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://docs.nirmata.io/docs/control-hub/identity-access/users/</guid><description>&lt;p>An account can have multiple users, and each user has a role that
defines what they can see and do. When a new account is created, the
first user has an &lt;em>admin&lt;/em> role which allows that user to create and
manage additional users for the account.&lt;/p>
&lt;h2 id="user-roles-and-description">User roles and description&lt;/h2>
&lt;p>The following user roles are available:&lt;/p>
&lt;table>
 &lt;thead>
 &lt;tr>
 &lt;th>Role&lt;/th>
 &lt;th>Description&lt;/th>
 &lt;/tr>
 &lt;/thead>
 &lt;tbody>
 &lt;tr>
 &lt;td>&lt;strong>admin&lt;/strong>&lt;/td>
 &lt;td>&lt;em>admin&lt;/em> users have full access to the account and can manage other users and their access.&lt;/td>
 &lt;/tr>
 &lt;tr>
 &lt;td>&lt;strong>platform&lt;/strong>&lt;/td>
 &lt;td>&lt;em>platform&lt;/em> users can access all resources including Compliance, Inventory Report, and Policies, but cannot manage users.&lt;/td>
 &lt;/tr>
 &lt;tr>
 &lt;td>&lt;strong>security&lt;/strong>&lt;/td>
 &lt;td>&lt;em>security&lt;/em> users can view the Policy Report and manage Policy Exceptions. They have the privilege to review Policy Exception requests and have access to Compliance, Clusters, and Repositories, but cannot manage users.&lt;/td>
 &lt;/tr>
 &lt;tr>
 &lt;td>&lt;strong>devops&lt;/strong>&lt;/td>
 &lt;td>&lt;em>devops&lt;/em> users have the least privileged access. A devops user can view the Policy Report and create Policy Exceptions. They do not have access to Compliance, Inventory Report, and cannot manage users.&lt;/td>
 &lt;/tr>
 &lt;/tbody>
&lt;/table>
&lt;h2 id="configuring-user-roles-and-permissions">Configuring user roles and permissions&lt;/h2>
&lt;p>Identity &amp;amp; Access Management (IAM) lets you add users, set user privileges, group users in teams, and configure access methods such as Security Assertion Markup Language (SAML), OpenID Connect (OIDC), and Multi-Factor Authentication (MFA).&lt;/p></description></item><item><title>Teams</title><link>https://docs.nirmata.io/docs/control-hub/identity-access/teams/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://docs.nirmata.io/docs/control-hub/identity-access/teams/</guid><description>&lt;p>In Nirmata, users can be organized into &lt;em>teams&lt;/em>. A team is a logical entity that allows you to manage permissions for a group of users who require shared access to organizational resources. Each team can include multiple users, each with specific roles and permissions.&lt;/p>
&lt;hr>
&lt;h2 id="adding-a-team">Adding a Team&lt;/h2>
&lt;p>To create a new team:&lt;/p>
&lt;ol>
&lt;li>Navigate to &lt;strong>Identity &amp;amp; Access &amp;gt; Teams&lt;/strong>.&lt;/li>
&lt;li>Click the &lt;strong>Add Team&lt;/strong> button. The &lt;em>Add a New Team&lt;/em> page will appear.&lt;/li>
&lt;li>In the &lt;strong>Name&lt;/strong> field, enter the team’s name.&lt;/li>
&lt;li>In the &lt;strong>Description&lt;/strong> field, provide a brief description of the team.&lt;/li>
&lt;li>To add users:
&lt;ul>
&lt;li>In the &lt;strong>Users&lt;/strong> section, click the &lt;strong>Add Users&lt;/strong> button.&lt;/li>
&lt;li>In the search field, enter the user’s name and select the checkbox next to it.&lt;/li>
&lt;/ul>
&lt;/li>
&lt;li>To assign namespace access:
&lt;ul>
&lt;li>Click the &lt;strong>Add Access Control&lt;/strong> button.&lt;/li>
&lt;li>In the search field, enter the desired namespaces and select the corresponding checkboxes.&lt;/li>
&lt;/ul>
&lt;/li>
&lt;li>Click &lt;strong>Create&lt;/strong> to finalize the team.&lt;/li>
&lt;/ol>
&lt;hr>
&lt;h2 id="editing-or-deleting-a-team">Editing or Deleting a Team&lt;/h2>
&lt;p>To edit a team:&lt;/p></description></item></channel></rss>