Current user role allocation supports well administration, but how to allocate rights easily in user environment (for users that only go there to search events and run reports).
Sentinel should support multiple roles for users. This way allocating rights to users would be more detailed and flexible in multirole environments. For example allocation Windows and Network roles to a user the Sentinel admin could allow access to logs in both environments without creating a role each user.

Comments

  • Sentinel should be able to map LDAP groups to its roles. So authorization can be delegated to a directory services just like authentication.

  • Timo, thanks for submitting this idea. We will look it over and let you know what our thoughts are. Or we may ask for additional information.

  • Will this be introduced in 8.2? Another customer is asking for similar changes as Timo.