Editing a custom role

Prev Next

You can change the name, description, and role assignment of a custom role in your Trellix IAM organization. To edit a custom role, use the Role Definitions view of the Roles page.

Note

You cannot edit or delete global roles, and you cannot change the product type of a custom role.

CloudIAM_Roles_Edit.png

Note

If you change a role while an affected user is logged in, the user is forcibly logged out. When the user logs in again, the user has the capabilities provided by the new definition of the role.

Prerequisites
  • IAM Admin access to the Trellix IAM Web UI.

To edit a custom role:

  1. Log in to the Trellix IAM Web UI.

  2. Select Organization Settings > Roles. The Role Definitions view lists the global and custom roles defined in your IAM organization.

  3. (Optional) Sort and filter the list on the Name field or the Description field.

  4. Click the name of the custom role you want to edit. The Edit Role view shows details about the selected role.

  5. To change the name or description of a custom role, enter new text in the Name or Description fields.

  6. To add an entitlement to the custom role, do the following:

    1. In the Available Entitlements list, find the entitlement you want to add.

    2. Go to the Options column and click Grant.

  7. To remove an entitlement from the custom role, do the following:

    1. In the Assigned Entitlements list, find the entitlement you want to remove.

    2. Go to the Options column and click Remove.

  8. Verify that the entitlement names are updated in the Available Entitlements list and in the Assigned Entitlements list.

  9. Click Update Role.