Custom roles

Prev Next

An organization administrator can create custom roles to have more granular control over what users can view and perform in the Helix Enterprise Web UI. For example, you could grant entitlements to a role that allows users to view alerts but not take actions on them, or that allows federated users to view dashboards across child organizations but not add or modify them.

Tip

You could review the entitlements granted to the various Helix Enterprise global roles to help determine which entitlements to include in custom roles.

If a user does not have permission to view or take actions in areas of the Web UI, the areas will not be available or an error message will be displayed.

See the Trellix System Security Guide for the following information:

  • A list of all Helix Enterprise entitlements and lists of the entitlements granted to each global role, in the "Entitlements for Helix Enterprise Roles" section.

  • Instructions for creating a custom role, in the "Trellix IAM Roles" section.

    Important

    There are two versions of IAM. If the URL you use to access the IAM UI ends with fireeye.com, this document pertains to you. If the URL you use to access the IAM UI ends with trellix.com, see the Trellix IAM Guide for information regarding IAM.