Permission sets define rights for managed product functionality in ePO - On-prem.
Threat Prevention adds the Endpoint Security Threat Prevention and Endpoint Security Threat Prevention Client permission group to each permission set.
Permission groups define the access rights to the features. ePO - On-prem grants all permissions for all products and features to global administrators. Administrators then assign user roles to existing permission sets or create permission sets.
Your managed product adds these permission controls to ePO - On-prem.
Permission sets | Default permissions |
|---|---|
Executive Reviewer Endpoint Security Threat Prevention and Endpoint Security Threat Prevention Client | No permissions |
Global Reviewer Endpoint Security Threat Prevention | Views policy and task settings. |
Global Reviewer Endpoint Security Threat Prevention Client | No permissions |
Group Admin Endpoint Security Threat Prevention and Endpoint Security Threat Prevention Client | No permissions |
Group Reviewer Endpoint Security Threat Prevention and Endpoint Security Threat Prevention Client | No permissions |
This managed product grants No Permissions by default.
Permissions must be granted for users to access or use permission-controlled features.
Features | Required permissions |
|---|---|
Automatic Responses |
|
Client tasks | Endpoint Security Threat Prevention: Tasks in the Endpoint Security Threat Prevention permission group |
Dashboards and monitors |
|
Policies | Endpoint Security Threat Prevention: Policy in the Endpoint Security Threat Prevention permission group |
Reporting |
|
Queries |
|
Server tasks | Server Tasks |
System Tree |
|
Threat Event Log |
|
For information about managing permission sets, see the ePO - On-prem documentation.