Permissions List

Use permissions to control the access different roles have to the different functions and assets in Axonius.

Permissions are the building blocks for Axonius Role Based Access Control (RBAC). Each role consists of a collection of permissions for various elements in the system. Each user is assigned a specific role with permissions. Each role consists of the following categories and each category consists of different set of permissions.

There are two types of permissions:

  • Platform Capabilities Permissions - These permissions control access to the various functions and pages in Axonius. Some examples are Dashboards, Asset Graph, Activity Logs, Adapters, and Action Center.
  • Asset Permissions - Permissions are configured separately for each asset type in Axonius. Refer to the list of Asset Types for the full list of assets that a user needs permission to work with them.

See Managing Roles for how to create roles and assign permissions.

The tables below lists all the system permissions and some asset permissions:

CategoryModuleSub-CategoryPermission
SystemGlobal ActionsGeneralSave data analytics
Enable support center link
AccessAPI AccessGeneralEnable API access
Reset API key
ManagementSystem ManagementGeneralView
Update
Manage data scopes
Move between data scopes
RolesAdd
Edit
Delete
GeneralManage admin users
Manage gateways
View gateways
NotificationsView
GeneralRun manual discovery cycle
TenantsAdd
Edit
Delete
GeneralExport to CSV
UsersUsers ManagementGeneralView user accounts and roles
UserAdd
Edit
Delete
GeneralManage Service Accounts
Export to CSV
AnalyticsDashboardsGeneralView
ChartsAdd
Edit
Delete
DashboardsAdd and edit
Add and edit for all data scopes
Add and edit private dashboards
Import
Export
Delete
Set default dashboards for data scopes
Manage dashboard folders
Refresh
GeneralExport to CSV
IdentitiesIdentities: RulesGeneralCreate and Edit
Delete
Activation
SearchQueriesGeneralManage query folders
Manage query calculation
Import
Export
View query history of all users
Add and edit for all data scopes
Export to CSV
ReportingReportsGeneralView
Add
Edit
Disable email reports
Delete
Allow private reports
Export to CSV
InfrastructureManaged Compute NodesGeneralView
Edit
Restart and shut down
AdaptersAdaptersGeneralView
ConnectionsCreate
Edit
Delete
Terminate
Fetch
GeneralEdit advanced settings
Saved QueriesRun
Create
Edit
Delete
GeneralExport to CSV
InvestigationAsset InvestigationGeneralView
Edit tracked fields
Saved QueriesRun
Create
Edit
Delete
VisualizationAsset GraphGeneralView
Create
Edit
Add and edit for all data scopes
Load saved graph
Manage graph folders
Delete
AlertsFindingsGeneralView
Modify
AlertsView
Modify
Saved QueriesRun
Create
Edit
Delete
AuditingActivity logsGeneralView
Saved QueriesRun
Create
Edit
Delete
GeneralExport to CSV
AutomationAction CenterGeneralView
Add and import
Edit
Duplicate
Export
Run
Delete
Action Center TasksView
Terminate
Export to CSV
CasesCase ManagementGeneralView
Create case
Edit case
Delete case
MappingField MappingGeneralView
Add
Edit
Delete
AccessAccess RequestGeneralCreate request
ComplianceCloud Asset ComplianceGeneralView
Update Benchmark settings
Exclusions and CommentsManage Exclusions and Comments
GeneralExport to CSV
DataIngestion RulesGeneralView
Update
AIChatbotGeneralEnable Chatbot
UIWorkspacesGeneralSet homepage dashboard
Edit homepage dashboard

Assets


📘

Note:

  • Permissions are configured separately for each asset type in Axonius. The permissions available for each asset are similar to those detailed below for Device and User assets. Refer to the list of Asset Types for the full list of assets which each need these permissions configured.
  • When you apply permissions to assets that have sub-assets the permissions apply to all related sub-assets.

CategoryModuleSub-CategoryPermission
AssetsDevicesGeneralView devices
Create, delete, and link
Edit tags and custom data
Manage notes
Saved QueriesRun
Create
Edit
Delete
GeneralEdit device relationships
Column ViewsView
Manage
GeneralExport to CSV
UsersGeneralView users
Create, delete, and link
Edit tags and custom data
Manage notes
Saved QueriesRun
Create
Edit
Delete
GeneralEdit user relationships
Column ViewsView
Manage
GeneralExport to CSV
Edit tags and custom data
Alerts/FindingsGeneralView alerts/findings
Create, delete, and link
Manage notes
Saved QueriesRun
Create
Edit
Delete
Column ViewsView
Manage
GeneralEdit alert finding relationships
Export to CSV
CasesGeneralView cases
Create, delete, and link
Edit tags and custom data
Manage notes
Saved QueriesRun
Create
Edit
Delete
Column ViewsView
Manage
GeneralEdit case relationships
Export to CSV
Compliance FindingsGeneralView compliance findings
Create, delete, and link
Edit tags and custom data
Manage notes
Saved QueriesRun
Create
Edit
Delete
Column ViewsView
Manage
GeneralEdit compliance finding relationships
Export to CSV