Required Permissions for Managing Roles

Specific permissions must be set in the source to enable SailPoint to manage roles. The following table lists the features that rely on which required permissions found in the Delinea Secret Server source.

Feature

Required Permission

Description

Fetch roles

View Roles

Allows a user to view roles in the system. Also allows a user to see which groups are assigned to which roles.

View the roles assigned to a user or a group

View Group Roles

Allows a user to see which groups and users are assigned to which roles. Does not allow a user to change these assignments.

Edit the roles assigned to a user

Administer Role Assignment

Allows a user to view which users and groups are assigned to which roles. Also allows users to assign users and groups to different roles.