ReferenceRole-Based Access Control

Configuring Role Based Access Control

RunReveal supports Role Based Access Control for subjects accessing resources in your workspace.

We have configured a set of default roles to simplify the management of permissions assignment to users through those roles.

Each resource has permissions defined for Read and Edit actions. Read allows read-only access to the class of resources including listing the instances of that resource. Edit allows for creation, updating, and deletion of resources (delete is included in edit permissions).

The following roles have been defined for workspaces: admin, analyst, operator and cibot. Below you will see their permissions enumerated.

PermissionDescriptionAdminAnalystOperatorCIBot
Read WorkspacesView workspace information and members
Edit WorkspacesModify workspace settings and members
Read SourcesView data sources and configurations
Edit SourcesCreate, modify, and delete data sources
Read DestinationsView destination configurations
Edit DestinationsCreate, modify, and delete destinations
Read QueriesRun queries and view detections
Edit QueriesCreate, modify, and delete queries and detections
Read ParametersView parameter configurations
Edit ParametersCreate, modify, and delete parameters
Read InvestigationsView investigation data
Edit InvestigationsCreate and modify investigations
Read FiltersView filter configurations
Edit FiltersCreate, modify, and delete filters
Read EnrichmentsView enrichment configurations
Edit EnrichmentsCreate, modify, and delete enrichments
Read NotificationsView notification configurations
Edit NotificationsCreate, modify, and delete notifications
Read Dashboard LayoutsView dashboard configurations
Edit Dashboard LayoutsCreate, modify, and delete dashboards
Read TopicsView topic configurations
Edit TopicsCreate, modify, and delete topics
Create TokensCreate workspace tokens and API keys
Manage SessionsManage user sessions
Read ChatView chat conversations and history
Edit ChatCreate new chats and send messages
Read Custom ViewsView custom views and use them in queries
Edit Custom ViewsCreate, modify, and delete custom views
Read Custom RolesView custom role configurations and assignments
Edit Custom RolesCreate, modify, and delete custom roles