User Groups and Permissions¶
The Enterprise Analytics Platform uses the EnOS Identity and Access Management (IAM) service to control the user groups and permissions. EAP administrators can manage the products and resources accessible for users or user groups by assigning corresponding access policies to them.
Enterprise Analytics Platform supports built-in user groups and custom user groups to manage user permission. With built-in groups, EAP administrators can quickly manage user permissions. If the built-in groups cannot meet the business needs, EAP administrators can create custom groups. See the following example:
Create User Groups¶
After Enterprise Analytics Platform is installed, the OU administrator needs to create the following user groups through EnOS Identity and Access Management > User Group for the EAP built-in user groups (and add users to each group):
eap_admin
eap_developer
eap_operator
eap_visitor
Created user groups are as follows:
For more information about using the IAM service for user and permission management, see Managing Identities and Access.
Manage User Group Permissions¶
EAP administrators can configure and manage the permissions (read, create, update, delete, and execute) to access module resources for each user group.
Log in to EnOS Management Console as EAP administrator and select Enterprise Analytics Platform > Machine Intelligence Studio > Dashboard.
Click Permission Mgmt in the upper-right corner of the page, on the Permission Configuration page, view or edit the permissions of built-in user groups to access EAP module resources.
If you need more user groups, click + Custom Group and configure the permission. Meanwhile, add a user group with the same name through the EnOS Identity and Access Management page for the group users. Then, log in again to make the custom group active.