With all the different permissions that can be assigned to a role, it can be difficult to know which permissions you actually need or where to start when creating a new role. It is easy to give a role too many permissions or miss out a required permission that an assigned permission needs in order to work properly.
That is why we have created some predefined Role Templates that you can add when creating a new role (or editing an existing role). These add all the basic permissions that you might need for a certain role and you can still assign additional permissions or remove assigned permissions as required.
Available Role Templates
| Template | Description |
|---|---|
| Business Unit Manager | Allows the user to create and edit users and Organisational Units, including the ability to deprovision or delete user profiles. |
| Contact Manager | Allows the user to manage contacts, including external contacts, and view user profile aliases. Note: This role template is only available to Google Workspace domains. |
| Apps Integration | Allows the user to copy profiles and external contacts to their personal address book, create appointments in their calendar, and send emails from links within action menus. |
| Signature Manager | Allows the user to edit Email Signature templates and assign them to user emails. |
| 1st Line Support | Allows the user to provide first line support, including managing and editing users (including passwords, verification, and contacts), but they cannot deprovision or delete users. They can also view hidden users and Organisational Units, last login timestamps, aliases, suspended profiles, and the Organisational Unit hierarchy. |
| Security Manager | Allows the user full permissions, with the exception of editing Email Signature templates, Global Settings, and Organisational Units, managing Smart Teams and their priority level, and viewing application logs. Any unassigned permissions can be added manually if required. |
Applying a role template
Role templates are a starting point — you can add or remove individual permissions after applying one. For step-by-step instructions, refer to Manage Custom Roles.
Need help? Contact CloudM Support