SonicWall Unified Management Administration Guide

Table of Contents

Product Group Roles and Privileges

You can define the permissions to access the product consoles with the user groups.

If a user is part of multiple user groups with different access levels, least access will be applied to the user account. For example, a user is part of User Group A and User Group B. User Group A has full Admin access to products and tenants. But, User Group B has No Access to all Products and Tenants The user cannot see any tenants under Scope Selector and product tiles on the Dashboard.

Firewall Roles and Privileges

Role

Permissions

Configuration Rights

Additional Privileges

Admin

Can configure firewalls; can edit user information (email/timeout); can add or delete devices in Unified Management.

Yes

Edit user info (email/timeout); add/delete devices in Unified Management

Support

Can view firewall configurations only; cannot configure.

No

None

Operator

Can configure firewalls.

Yes

None

Read Only

Can view firewall configurations only; cannot configure.

No

None

Guest

Can view firewall configurations only; cannot configure.

No

None

No Access

Can view firewall configurations only; cannot configure.

No

None

CC/Endpoint, and CC-MDR Roles and Privileges

Role

Permissions

Configuration Rights

Additional Privileges

Admin

Can access and edit all sections; changes reflect in the management console; can assign privileges to other users.

Yes

Assign privileges; full access to all sections

Operator

Can perform device operations; can read and write in Assets and Reports sections.

Partial (Assets & Reports only)

Device operations

Viewer

Can only read any sections in the console.

No

None

Switches and Access Points, and Cloud Secure Edge Roles and Privileges

Role

Permissions

Configuration Rights

Additional Privileges

Admin

Can access and edit all sections; changes reflect in the management console; can assign privileges to other users.

Yes

Assign privileges; full access to all sections

Read Only

Can only read any sections in the console.

No

None

Cloud App Security Roles and Privileges

Role

Permissions

Configuration Rights

Additional Privileges

Admin

Can access and edit all sections; changes reflect in the management console; can assign privileges to other users.

Yes

Assign privileges; full access to all sections

Read Only

Can only read any sections in the console.

No

None

No Access

Can view configurations only; cannot configure.

No

None