Changes for page Users and roles

Last modified by Boris Folgmann on 2026/05/20 13:16

From version 9.1
edited by Boris Folgmann
on 2026/05/20 13:16
Change comment: There is no comment for this version
To version 1.1
edited by DOaaS Operator
on 2025/02/05 11:33
Change comment: Imported from XAR

Summary

Details

Page properties
Parent
... ... @@ -1,1 +1,1 @@
1 -Main.WebHome
1 +DevOps Portal for Admins.WebHome
Author
... ... @@ -1,1 +1,1 @@
1 -xwiki:XWiki.borisfolgmannt-systemscom
1 +xwiki:XWiki.sdcloud-admin-0
Content
... ... @@ -2,52 +2,36 @@
2 2  
3 3  = Role Model =
4 4  
5 -== Portal Roles ==
6 -
7 -Inside the DevOps Portal users have exactly one defined role out of three.
8 -
9 -(% class="active" %)|=(% style="width: 124px;" %)Portal Role|=(% style="width: 861px;" %)Description
10 -|(% style="width:124px" %)(((
11 -Admin
12 -)))|(% style="width:861px" %)Admins have full-access. They can //create//, //edit //and //delete //all kinds of entities, like users, projects, organizations, technical users and roles. Therefore, they can also add additional admins who have the same privileges. The last Admin cannot remove himself.
13 -|(% style="width:124px" %)(((
14 -Creator
15 -)))|(% style="width:861px" %)Creators can //create //all kinds of entities like users, projects, organizations and technical users. When a Creator creates a new project he is automatically assigned an admin role in the project, which allows him to add more members.
16 -|(% style="width:124px" %)(((
17 -User
18 -)))|(% style="width:861px" %)All other users are simply called users. They can be assigned any role in projects.
19 -
20 -(% class="wikigeneratedid" %)
21 -The permissions of these roles are documented at [[DevOps Portal for Users>>DevOps Portal for Users.WebHome]], [[DevOps Portal for Creators>>DevOps Portal for Creators.WebHome]], and [[DevOps Portal for Admins>>DevOps Portal for Admins.WebHome]].
22 -
23 -== Project Roles ==
24 -
25 25  Each user who is a member of a project has to be in //exactly one// Project Role. Therefore it is not possible to have no or multiple roles in a project.
26 26  
27 27  Different roles have different sets of permissions. Possible roles are:
28 28  
29 -(% class="responsive-table" %)
30 -(% class="active" %)|=(% style="width: 120px;" %)(((
31 -Project Role
32 -)))|=(% style="width: 864px;" %)(((
33 -Description
9 +|=(% style="text-align: left;" %)(((
10 +Role
11 +)))|=(% style="text-align: left;" %)(((
12 +Decription
34 34  )))
35 -|(% style="width:120px" %)(((
14 +|(% style="text-align:left" %)(((
36 36  Admin
37 -)))|(% style="width:864px" %)(((
38 -Full access, even to potentially dangerous operations like deleting content in the Project. Can administer Project Members and Roles.
16 +)))|(% style="text-align:left" %)(((
17 +(% class="content-wrapper" %)
18 +(((
19 +Full access, even to potentially dangerous operations like User and Project Provisioning. Can administer Project Members and Roles.
39 39  )))
40 -|(% style="width:120px" %)(((
21 +)))
22 +|(% style="text-align:left" %)(((
41 41  Master
42 -)))|(% style="width:864px" %)Elevated write acccess, excluding potentially dangerous operations which can lead to massive data loss or other unrevertable changes.
43 -|(% style="width:120px" %)(((
24 +)))|(% style="text-align:left" %)(((
25 +Limited full access to avoid accidental data loss or other unrevertable changes.
26 +)))
27 +|(% style="text-align:left" %)(((
44 44  Developer
45 -)))|(% style="width:864px" %)(((
46 -General read-write access to contribute to the Project
29 +)))|(% style="text-align:left" %)(((
30 +Read-write access to contribute to the Project
47 47  )))
48 -|(% style="width:120px" %)(((
32 +|(% style="text-align:left" %)(((
49 49  Viewer
50 -)))|(% style="width:864px" %)(((
34 +)))|(% style="text-align:left" %)(((
51 51  Read-only access to all not security-relevant data in the Project
52 52  )))
53 53  
... ... @@ -58,78 +58,79 @@
58 58  To ensure the integrity of the applications in the context of the managed service, no customer user is allowed to get system admin permissions for the tools. The maximum permissions for a customer user is the "Project Admin" role as described here
59 59  {{/info}}
60 60  
61 -= User Permissions in DevOps Portal =
45 += User Permissions in SDPortal =
62 62  
63 -|=(((
47 +(% class="relative-table" style="width:93.9554%" %)
48 +(% class="active" %)|=(((
64 64  Role Type
65 -)))|=(% colspan="3" rowspan="1" %)(((
66 -Portal Role
67 -)))|=(% rowspan="23" %) |=(% colspan="4" %)(((
50 +)))|=(% colspan="2" style="text-align: left;" %)(((
51 +(% style="text-align: center;" %)
52 +Global Role
53 +)))|=(% colspan="4" style="text-align: center;" %)(((
68 68  Project Role
69 69  )))
70 -|(((
56 +(% class="active" %)|(% class="highlight-#f4f5f7" data-highlight-colour="#f4f5f7" %)(((
71 71  **Role Name**
72 -)))|(((
58 +)))|(% class="highlight-#f4f5f7" data-highlight-colour="#f4f5f7" style="text-align:left" %)(((
73 73  **User**
74 -)))|(((
60 +)))|(% class="highlight-#f4f5f7" data-highlight-colour="#f4f5f7" style="text-align:left" %)(((
75 75  **Admin**
76 -)))|(((
77 -**Creator **
78 -)))|(((
62 +)))|(% class="highlight-#f4f5f7" data-highlight-colour="#f4f5f7" style="text-align:left" %)(((
79 79  **Viewer**
80 -)))|(((
64 +)))|(% class="highlight-#f4f5f7" data-highlight-colour="#f4f5f7" style="text-align:left" %)(((
81 81  **Developer**
82 -)))|(((
66 +)))|(% class="highlight-#f4f5f7" data-highlight-colour="#f4f5f7" style="text-align:left" %)(((
83 83  **Master**
84 -)))|(((
68 +)))|(% class="highlight-#f4f5f7" data-highlight-colour="#f4f5f7" style="text-align:left" %)(((
85 85  **Admin**
86 86  )))
87 -|Login to DevOps Portal|✅|✅|✅|✅|✅|✅|✅
88 -|Logout from DevOps Portal|✅|✅|✅|✅|✅|✅|✅
89 -|Change my password|✅|✅|✅|✅|✅|✅|✅
90 -|Reset forgotten password|✅|✅|✅|✅|✅|✅|✅
91 -|Display list of users|✅|✅|✅|✅|✅|✅|✅
92 -|Search for user |✅|✅|✅|✅|✅|✅|✅
93 -|Add or remove "Corporate Admin" role to user |❌|✅|❌|❌|❌|❌|❌
94 -|Create User|❌|✅|✅|❌|❌|❌|❌
95 -|Delete User|❌|✅|❌|❌|❌|❌|❌
96 -|Lock User|❌|✅|❌|❌|❌|❌|❌
97 -|Unlock User|❌|✅|❌|❌|❌|❌|❌
98 -|Send invitation mail for first login|❌|✅|❌|❌|❌|❌|❌
99 -|Display list of projects |❌|✅|❌|⚠ Only his projects|⚠  Only his projects|⚠  Only his projects|⚠  Only his projects
100 -|Search for project |❌|✅|❌|⚠  Only his projects|⚠  Only his projects|⚠  Only his projects|⚠  Only his projects
101 -|Create project |❌|✅|✅|❌|❌|❌|❌
102 -|Delete project|❌|✅|❌|❌|❌|❌|❌
103 -|Retire project |❌|✅|❌|❌|❌|❌|⚠  Only his projects
104 -|Reactivate project|❌|✅|❌|❌|❌|❌|⚠  Only his projects
105 -|Add User to Project|❌|✅|❌|❌|❌|❌|⚠  Only his projects
106 -|Remove User from Project|❌|✅|❌|❌|❌|❌|⚠  Only his projects
107 -|Display used storage by project/tool or total|❌|✅|❌|⚠  Only his projects|⚠  Only his projects|⚠  Only his projects|⚠  Only his projects
71 +|Login to SDPortal|✅|✅|✅|✅|✅|✅
72 +|Logout from SDPortal|✅|✅|✅|✅|✅|✅
73 +|Change my password|✅|✅|✅|✅|✅|✅
74 +|Reset forgotten password|✅|✅|✅|✅|✅|✅
75 +|Display list of users|✅|✅|✅|✅|✅|✅
76 +|Search for user |✅|✅|✅|✅|✅|✅
77 +|Add or remove "Corporate Admin" role to user |❌|✅|❌|❌|❌|❌
78 +|Create User|❌|✅|❌|❌|❌|❌
79 +|Delete User|❌|✅|❌|❌|❌|❌
80 +|Lock User|❌|✅|❌|❌|❌|❌
81 +|Unlock User|❌|✅|❌|❌|❌|❌
82 +|Send invitation mail for first login|❌|✅|❌|❌|❌|❌
83 +|Display list of projects |❌|✅|⚠ Only his projects|⚠  Only his projects|⚠  Only his projects|⚠  Only his projects
84 +|Search for project |❌|✅|⚠  Only his projects|⚠  Only his projects|⚠  Only his projects|⚠  Only his projects
85 +|Create project |❌|✅|❌|❌|❌|❌
86 +|Delete project|❌|✅|❌|❌|❌|❌
87 +|Retire project |❌|✅|❌|❌|❌|⚠  Only his projects
88 +|Reactivate project|❌|✅|❌|❌|❌|⚠  Only his projects
89 +|Add User to Project|❌|✅|❌|❌|❌|⚠  Only his projects
90 +|Remove User from Project|❌|✅|❌|❌|❌|⚠  Only his projects
91 +|Display used storage by project/tool or total|❌|✅|⚠  Only his projects|⚠  Only his projects|⚠  Only his projects|⚠  Only his projects
108 108  
109 109  = JIRA Project Roles / Permission Scheme =
110 110  
111 111  In JIRA the Project Roles are first added to Security / Project Roles and then they get their Permissions assigned in the SDCloud Permission Scheme which has to associated later with the Jira Projects.
112 112  
113 -|=(((
97 +(% class="responsive-table" %)
98 +(% class="active" %)|=(% style="text-align: left;" %)(((
114 114  Permission / Role
115 -)))|=(((
100 +)))|=(% style="text-align: left;" %)(((
116 116  Admin
117 -)))|=(((
102 +)))|=(% style="text-align: left;" %)(((
118 118  Master
119 -)))|=(((
104 +)))|=(% style="text-align: left;" %)(((
120 120  Developer
121 -)))|=(((
106 +)))|=(% style="text-align: left;" %)(((
122 122  Viewer
123 123  )))
124 -|=(% colspan="1" %)(((
109 +(% class="active" %)|=(% colspan="1" style="text-align: left;" %)(((
125 125  Project Permissions
126 -)))|(% colspan="1" %)(((
111 +)))|(% class="highlight-#f4f5f7" colspan="1" data-highlight-colour="#f4f5f7" style="text-align:left" %)(((
127 127  
128 -)))|(% colspan="1" %)(((
113 +)))|(% class="highlight-#f4f5f7" colspan="1" data-highlight-colour="#f4f5f7" style="text-align:left" %)(((
129 129  
130 -)))|(% colspan="1" %)(((
115 +)))|(% class="highlight-#f4f5f7" colspan="1" data-highlight-colour="#f4f5f7" style="text-align:left" %)(((
131 131  
132 -)))|(% colspan="1" %)(((
117 +)))|(% class="highlight-#f4f5f7" colspan="1" data-highlight-colour="#f4f5f7" style="text-align:left" %)(((
133 133  
134 134  )))
135 135  |Administer projects
... ... @@ -139,7 +139,7 @@
139 139  |Service Desk Agent|✅|✅|✅|❌
140 140  |View development tool|✅|✅|✅|✅
141 141  |View (read-only) workflow|✅|✅|✅|✅
142 -|=Issue Permissions| | | |
127 +(% class="active" %)|=Issue Permissions| | | |
143 143  |Assign issues|✅|✅|✅|❌
144 144  |Assignable user|✅|✅|✅|❌
145 145  |Close issues|✅|✅|❌|❌
... ... @@ -153,20 +153,20 @@
153 153  |Schedule issues|✅|✅|❌|❌
154 154  |Set issues security|✅|❌|❌|❌
155 155  |Transition issues|✅|✅|✅|❌
156 -|=(% colspan="1" %)Voters & watchers permissions|(% colspan="1" %) |(% colspan="1" %) |(% colspan="1" %) |(% colspan="1" %)
157 -|Manage watcher list|✅||❌|❌
141 +(% class="active" %)|=(% colspan="1" %)Voters & watchers permissions|(% colspan="1" %) |(% colspan="1" %) |(% colspan="1" %) |(% colspan="1" %)
142 +|Manage watcher list|✅||❌|❌
158 158  |View voters and watchers|✅|✅|✅|❌
159 -|=(% colspan="1" %)Comments permissions|(% colspan="1" %) |(% colspan="1" %) |(% colspan="1" %) |(% colspan="1" %)
144 +(% class="active" %)|=(% colspan="1" %)Comments permissions|(% colspan="1" %) |(% colspan="1" %) |(% colspan="1" %) |(% colspan="1" %)
160 160  |Add comments|✅|✅|✅|❌
161 161  |Delete all comments|✅|❌|❌|❌
162 162  |Delete own comments|✅|✅|✅|❌
163 163  |Edit all comments|✅|❌|❌|❌
164 164  |Edit own comments|✅|✅|✅|❌
165 -|=(% colspan="1" %)Attachments permissions|(% colspan="1" %) |(% colspan="1" %) |(% colspan="1" %) |(% colspan="1" %)
150 +(% class="active" %)|=(% colspan="1" %)Attachments permissions|(% colspan="1" %) |(% colspan="1" %) |(% colspan="1" %) |(% colspan="1" %)
166 166  |Create attachments|✅|✅|✅|❌
167 167  |Delete all attachments|✅|❌|❌|❌
168 168  |Delete own attachments|✅|✅|✅|❌
169 -|=(% colspan="1" %)Time-tracking Permissions|(% colspan="1" %) |(% colspan="1" %) |(% colspan="1" %) |(% colspan="1" %)
154 +(% class="active" %)|=(% colspan="1" %)Time-tracking Permissions|(% colspan="1" %) |(% colspan="1" %) |(% colspan="1" %) |(% colspan="1" %)
170 170  |Work on issues|✅|✅|✅|❌
171 171  |Delete all worklogs|✅|❌|❌|❌
172 172  |Delete own worklogs|✅|✅|✅|❌
... ... @@ -177,25 +177,25 @@
177 177  
178 178  = Confluence Project Roles =
179 179  
180 -See vendor documentation for the exact meaning: [[https:~~/~~/confluence.atlassian.com/doc/space-permissions-overview-139521.html>>url:https://confluence.atlassian.com/doc/space-permissions-overview-139521.html]].
165 +See vendor documentation for the exact meaning: [[https:~~/~~/confluence.atlassian.com/doc/space-permissions-overview-139521.html>>url:https://confluence.atlassian.com/doc/space-permissions-overview-139521.html||rel="nofollow" shape="rect" style="text-decoration: none;" class="external-link"]].
181 181  
182 -|=(((
167 +(% class="active" %)|=(% style="text-align: center;" %)(((
183 183  Space
184 -)))|=(% colspan="2" %)(((
169 +)))|=(% colspan="2" style="text-align: center;" %)(((
185 185  All
186 -)))|=(% colspan="2" %)(((
171 +)))|=(% colspan="2" style="text-align: center;" %)(((
187 187  Pages
188 -)))|=(% colspan="2" %)(((
173 +)))|=(% colspan="2" style="text-align: center;" %)(((
189 189  Blog
190 -)))|=(% colspan="2" %)(((
175 +)))|=(% colspan="2" style="text-align: center;" %)(((
191 191  Attachments
192 -)))|=(% colspan="2" %)(((
177 +)))|=(% colspan="2" style="text-align: center;" %)(((
193 193  Comments
194 -)))|=(((
179 +)))|=(% style="text-align: center;" %)(((
195 195  Restrictions
196 -)))|=(((
181 +)))|=(% style="text-align: center;" %)(((
197 197  Mail
198 -)))|=(% colspan="2" %)(((
183 +)))|=(% colspan="2" style="text-align: center;" %)(((
199 199  Space
200 200  )))
201 201  |=(% colspan="1" %)Role/Operation|(% colspan="1" %)View|(% colspan="1" %)Delete Own|(% colspan="1" %)Add|(% colspan="1" %)Delete|(% colspan="1" %)Add|(% colspan="1" %)Delete|(% colspan="1" %)Add|(% colspan="1" %)Delete|(% colspan="1" %)Add|(% colspan="1" %)Delete|(% colspan="1" %)Add/Delete|(% colspan="1" %)Delete|(% colspan="1" %)Export|(% colspan="1" %)Admin
... ... @@ -206,25 +206,25 @@
206 206  
207 207  = Bitbucket Project Roles =
208 208  
209 -|=(((
194 +(% class="active" %)|=(% style="text-align: left;" %)(((
210 210  
211 -)))|=(((
212 -Browse
213 -)))|=(((
214 -Clone / Pull
215 -)))|=(% colspan="1" %)(((
216 -Create, browse, comment on pull request
217 -)))|=(% colspan="1" %)(((
218 -Merge pull request
219 -)))|=(% colspan="1" %)(((
220 -Push
221 -)))|=(% colspan="1" %)(((
222 -Create repositories
223 -)))|=(% colspan="1" %)(((
224 -Edit settings / permissions
196 +)))|=(% style="text-align: left;" %)(((
197 +(% style="color:#333333" %)Browse
198 +)))|=(% style="text-align: left;" %)(((
199 +(% style="color:#333333" %)Clone / Pull
200 +)))|=(% colspan="1" style="text-align: left;" %)(((
201 +(% style="color:#333333" %)Create, browse, comment on pull request
202 +)))|=(% colspan="1" style="text-align: left;" %)(((
203 +(% style="color:#333333" %)Merge pull request
204 +)))|=(% colspan="1" style="text-align: left;" %)(((
205 +(% style="color:#333333" %)Push
206 +)))|=(% colspan="1" style="text-align: left;" %)(((
207 +(% style="color:#333333" %)Create repositories
208 +)))|=(% colspan="1" style="text-align: left;" %)(((
209 +(% style="color:#333333" %)Edit settings / permissions
225 225  )))
226 226  |Admin|✅|✅|✅|✅|✅|✅|✅
227 -|Master|✅|✅|✅|✅|✅||❌
212 +|Master|✅|✅|✅|✅|✅||❌
228 228  |Developer|✅|✅|✅|✅|✅|❌|❌
229 229  |Viewer|✅|✅|✅|❌|❌|❌|❌
230 230  
... ... @@ -232,23 +232,24 @@
232 232  
233 233  = Jenkins Project Roles =
234 234  
235 -|=(% colspan="1" %)(((
220 +(% class="relative-table" style="width:1413.0px" %)
221 +(% class="active" %)|=(% colspan="1" style="text-align: left;" %)(((
236 236  Permission
237 -)))|=(((
223 +)))|=(% style="text-align: left;" %)(((
238 238  Role
239 -)))|=(((
225 +)))|=(% style="text-align: left;" %)(((
240 240  Admin
241 -)))|=(((
227 +)))|=(% style="text-align: left;" %)(((
242 242  Master
243 -)))|=(((
229 +)))|=(% style="text-align: left;" %)(((
244 244  Developer
245 -)))|=(((
231 +)))|=(% style="text-align: left;" %)(((
246 246  Viewer
247 -)))|=(% colspan="1" %)(((
233 +)))|=(% colspan="1" style="text-align: left;" %)(((
248 248  Authenticated Users
249 -)))|=(% colspan="1" %)(((
235 +)))|=(% colspan="1" style="text-align: left;" %)(((
250 250  Anonymous Users
251 -)))|=(% colspan="1" %)(((
237 +)))|=(% colspan="1" style="text-align: left;" %)(((
252 252  Prometheus Tech User
253 253  )))
254 254  |=(% rowspan="5" %)Credentials|Create|✅|✅|❌|❌|❌|❌|❌
... ... @@ -265,7 +265,7 @@
265 265  |ExtendedRead| | | | | | |
266 266  |Move|✅|❌|❌|❌|❌|❌|❌
267 267  |Read|✅|✅|✅|✅|❌|❌|❌
268 -|Workspace|✅|||❌|❌|❌|❌
254 +|Workspace|✅|||❌|❌|❌|❌
269 269  |=(% rowspan="3" %)Run|Delete|✅|❌|❌|❌|❌|❌|❌
270 270  |Replay|✅|✅|✅|❌|❌|❌|❌
271 271  |Update|✅|✅|✅|❌|❌|❌|❌
... ... @@ -279,7 +279,7 @@
279 279  
280 280  Users are assigned to Groups in GitLab with the following roles assignment.  Permissions within subordinated Subgroups and GitLab Projects are inherited.
281 281  
282 -|=(((
268 +(% class="active" %)|=(((
283 283  Project Role
284 284  )))|=(((
285 285  GitLab Group Members Permission
... ... @@ -305,13 +305,13 @@
305 305  Owner
306 306  )))
307 307  
308 -Regarding permissions for Group Permissions in GitLab, see [[https:~~/~~/docs.gitlab.com/ee/user/permissions.html#group-members-permissions>>url:https://docs.gitlab.com/ee/user/permissions.html#group-members-permissions]].
294 +Regarding permissions for Group Permissions in GitLab, see [[https:~~/~~/docs.gitlab.com/ee/user/permissions.html#group-members-permissions>>url:https://docs.gitlab.com/ee/user/permissions.html#group-members-permissions||shape="rect"]].
309 309  
310 310  = Harbor Project Roles =
311 311  
312 312  Harbor manages images through projects. You provide access to these images to users by including the users in projects and assigning one of the following roles to them:
313 313  
314 -|=(((
300 +(% class="active" %)|=(((
315 315  Harbor
316 316  )))|=(((
317 317  Portal
... ... @@ -324,7 +324,7 @@
324 324  
325 325  === Harbor Roles Permissions ===
326 326  
327 -|=(((
313 +(% class="active" %)|=(((
328 328  Action
329 329  )))|=(((
330 330  Limited Guest
... ... @@ -392,7 +392,7 @@
392 392  
393 393  Please note, that some terms used in DevOps-as-a-Service have different names in Gitea. Please check the following table to avoid any confusion.
394 394  
395 -|=(((
381 +(% class="active" %)|=(((
396 396  DevOps Portal
397 397  )))|=(((
398 398  Gitea
... ... @@ -425,7 +425,7 @@
425 425  
426 426  The **Owner** team has full admin permission in the Organization. This is a technical user used by the DevOps Portal for auto-provisioning.
427 427  
428 -|=(((
414 +(% class="active" %)|=(((
429 429  Gitea Role
430 430  )))|=(((
431 431  Portal Project Role
... ... @@ -447,60 +447,61 @@
447 447  
448 448  For each role in a project a role in Nexus is created which includes one Privilege for each repository in the project.
449 449  
450 -|=(((
436 +(% class="relative-table" style="width:1450.0px" %)
437 +(% class="active" %)|=(% style="text-align: left;" %)(((
451 451  Role
452 -)))|=(((
439 +)))|=(% style="text-align: left;" %)(((
453 453  Admin
454 -)))|=(((
441 +)))|=(% style="text-align: left;" %)(((
455 455  Master
456 -)))|=(((
443 +)))|=(% style="text-align: left;" %)(((
457 457  Developer
458 -)))|=(((
445 +)))|=(% style="text-align: left;" %)(((
459 459  Viewer
460 460  )))
461 -|(((
448 +|(% style="text-align:left" %)(((
462 462  ID
463 -)))|(((
450 +)))|(% style="text-align:left" %)(((
464 464  PROJECTKEY-admin
465 -)))|(((
452 +)))|(% style="text-align:left" %)(((
466 466  PROJECTKEY-master
467 -)))|(((
454 +)))|(% style="text-align:left" %)(((
468 468  PROJECTKEY-developer
469 -)))|(((
456 +)))|(% style="text-align:left" %)(((
470 470  PROJECTKEY-viewer
471 471  )))
472 -|(((
459 +|(% style="text-align:left" %)(((
473 473  Name
474 -)))|(((
461 +)))|(% style="text-align:left" %)(((
475 475  PROJECTKEY-admin
476 -)))|(((
463 +)))|(% style="text-align:left" %)(((
477 477  PROJECTKEY-master
478 -)))|(((
465 +)))|(% style="text-align:left" %)(((
479 479  PROJECTKEY-developer
480 -)))|(((
467 +)))|(% style="text-align:left" %)(((
481 481  PROJECTKEY-viewer
482 482  )))
483 -|(((
470 +|(% style="text-align:left" %)(((
484 484  Privilege
485 -)))|(((
472 +)))|(% style="text-align:left" %)(((
486 486  PROJECTKEY-docker-admin
487 487  
488 488  PROJECTKEY-maven-admin
489 489  
490 490  PROJECTKEY-//repotype//-admin
491 -)))|(((
478 +)))|(% style="text-align:left" %)(((
492 492  PROJECTKEY-docker-master
493 493  
494 494  PROJECTKEY-maven-master
495 495  
496 496  PROJECTKEY-//repotype//-master
497 -)))|(((
484 +)))|(% style="text-align:left" %)(((
498 498  PROJECTKEY-docker-developer
499 499  
500 500  PROJECTKEY-maven-developer
501 501  
502 502  PROJECTKEY-//repotype//-developer
503 -)))|(((
490 +)))|(% style="text-align:left" %)(((
504 504  PROJECTKEY-docker-viewer
505 505  
506 506  PROJECTKEY-maven-viewer
... ... @@ -510,60 +510,61 @@
510 510  
511 511  For each role in a project a **Privilege of type Repository Content Selector** is created which combines Content Selector (Project), Repository (Docker Registry) and Actions depending on the role.
512 512  
513 -|=(((
500 +(% class="relative-table" style="width:1450.0px" %)
501 +(% class="active" %)|=(% style="text-align: left;" %)(((
514 514  Privilege / Role
515 -)))|=(((
503 +)))|=(% style="text-align: left;" %)(((
516 516  Admin
517 -)))|=(((
505 +)))|=(% style="text-align: left;" %)(((
518 518  Master
519 -)))|=(((
507 +)))|=(% style="text-align: left;" %)(((
520 520  Developer
521 -)))|=(((
509 +)))|=(% style="text-align: left;" %)(((
522 522  Viewer
523 523  )))
524 -|(((
512 +|(% style="text-align:left" %)(((
525 525  Name
526 -)))|(((
514 +)))|(% style="text-align:left" %)(((
527 527  PROJECTKEY-docker-admin
528 -)))|(((
516 +)))|(% style="text-align:left" %)(((
529 529  PROJECTKEY-docker-master
530 -)))|(((
518 +)))|(% style="text-align:left" %)(((
531 531  PROJECTKEY-docker-developer
532 -)))|(((
520 +)))|(% style="text-align:left" %)(((
533 533  PROJECTKEY-docker-viewer
534 534  )))
535 -|(((
523 +|(% style="text-align:left" %)(((
536 536  Content Selector
537 -)))|(((
525 +)))|(% style="text-align:left" %)(((
538 538  PROJECTKEY-docker
539 -)))|(((
527 +)))|(% style="text-align:left" %)(((
540 540  PROJECTKEY-docker
541 -)))|(((
529 +)))|(% style="text-align:left" %)(((
542 542  PROJECTKEY-docker
543 -)))|(((
531 +)))|(% style="text-align:left" %)(((
544 544  PROJECTKEY-docker
545 545  )))
546 -|(((
534 +|(% style="text-align:left" %)(((
547 547  Repository
548 -)))|(((
536 +)))|(% style="text-align:left" %)(((
549 549  docker-registry
550 -)))|(((
538 +)))|(% style="text-align:left" %)(((
551 551  docker-registry
552 -)))|(((
540 +)))|(% style="text-align:left" %)(((
553 553  docker-registry
554 -)))|(((
542 +)))|(% style="text-align:left" %)(((
555 555  docker-registry
556 556  )))
557 -|(((
545 +|(% style="text-align:left" %)(((
558 558  Actions
559 -)))|(((
547 +)))|(% style="text-align:left" %)(((
560 560  delete, add, edit, browse, read
561 -)))|(((
549 +)))|(% style="text-align:left" %)(((
562 562  add, edit, browse, read
563 -)))|(((
551 +)))|(% style="text-align:left" %)(((
564 564  add, edit, browse, read
565 -)))|(((
553 +)))|(% style="text-align:left" %)(((
566 566  browse, read
567 567  )))
568 568  
569 -See [[https:~~/~~/help.sonatype.com/repomanager3/security/privileges>>url:https://help.sonatype.com/repomanager3/nexus-repository-administration/access-control/privileges]] for available Actions.
557 +See [[https:~~/~~/help.sonatype.com/repomanager3/security/privileges>>url:https://help.sonatype.com/repomanager3/nexus-repository-administration/access-control/privileges||shape="rect"]] for available Actions.