User Groups and Permissions


The Enterprise Analytics Platform uses the EnOS Identity and Access Management (IAM) service to control the user groups and permissions. EAP administrators can manage the products and resources accessible for users or user groups by assigning corresponding access policies to them.


Enterprise Analytics Platform supports built-in user groups and custom user groups to manage user permission. With built-in groups, EAP administrators can quickly manage user permissions. If the built-in groups cannot meet the business needs, EAP administrators can create custom groups. See the following example:


../_images/permission_config.png

Create User Groups

After Enterprise Analytics Platform is installed, the OU administrator needs to create the following user groups through EnOS Identity and Access Management > User Group for the EAP built-in user groups (and add users to each group):

  • eap_admin
  • eap_developer
  • eap_operator
  • eap_visitor


Created user groups are as follows:

../_images/eap_user_groups.png


For more information about using the IAM service for user and permission management, see Managing Identities and Access.

Manage User Group Permissions

EAP administrators can configure and manage the permissions (read, create, update, delete, and execute) to access module resources for each user group.

  1. Log in to EnOS Management Console as EAP administrator and select Enterprise Analytics Platform > Machine Intelligence Studio > Dashboard.

  2. Click Permission Mgmt in the upper-right corner of the page, on the Permission Configuration page, view or edit the permissions of built-in user groups to access EAP module resources.

    ../_images/managing_permission.png
  3. If you need more user groups, click + Custom Group and configure the permission. Meanwhile, add a user group with the same name through the EnOS Identity and Access Management page for the group users. Then, log in again to make the custom group active.