For more information regarding the security incident at F5, the actions we are taking to address it, and our ongoing efforts to protect our customers, click here.

Forum Discussion

zhaleh's avatar
zhaleh
Icon for Nimbostratus rankNimbostratus
Aug 15, 2017

permit user account

Hi, I want to permit user account to use only one module,for example user x just uses ltm module and user y just have access to asm module

 

1 Reply

  • There are no user roles that specifically allow access only to particular modules, but there are a couple of roles that might fit your needs. As described in the manual BIG-IP Systems: User Account Administration:

     

    • An Application Security Manager "grants a user permission to manage BIG-IP Application Security Manager (ASM)security policy objects. With respect to ASM policy objects, this role is similar to the Administrator role. You can assign this role only when the BIG-IP system includes the ASM module. Users with this role cannot have other user roles on the system." This role cannot be combined with any other role.

       

    • A Manager "grants a user permission to manage a subset of local traffic objects." This role can be combined with other roles to permit additional accesses.