RapidIdentity uses groups within the Groups module to manage access and authorization across modules and their respective components. These groups are often referred to within the product as Appliance Roles. Below is a table that outlines each group, the corresponding Appliance Role, and the privileges granted.
Security Group Name (Groups Module) | Appliance Role Name (Configuration) | Privileges |
|---|---|---|
| API Developer | API Developer | Allows access to the embedded RapidIdentity API Documentation located at The following endpoints are made available:
Note:If your RapidIdIdentity Cloud host name is identityautomation.rapididentity.com then you can access the API documentation at https://identityautomation.rapididentity.com/api/rest/api-docs |
| Authentication API Consumer | Authentication API Consumer | Provides access to the Note:The list of the /api/rest/authn/v1 APIs can be found in the embedded RapidIdentity API documentation located at /api/rest/api-docs under authn-service |
| Connect Administrator | Connect Admin | Provides full access to the RapidIdentity Connect Module:
|
| Connect Auditor | Connect Auditor | Provides limited access to RapidIdentity Connect:
|
| Connect Operator | Connect Operator | Provides a read-only view of Connect with processing and export capabilities:
|
| District Manager | District Manager | Provides the following access by module:
|
| Insights Manager | Insights Manager | Provides full access to the Insights module Only an Insight Manager can:
|
| Insights Viewer | Insights Viewer | Provides view-only access to all Insights dashboards, and the ability to do the following:
|
| Portal Administrator | Portal Profiles Admin | Note:This role alone cannot access the Configuration module. Acts as the administrator for the following Portal modules:
|
| Portal Dashboard Viewer | Portal Dashboard Viewer (Summary & Details, Summary, & Executive) | Provides view-only access to the legacy dashboards in the Dashboard module |
| Portal Help Desk | Portal Profiles Helpdesk | Provides limited access to the People, Roles, and Requests module:
|
| Portal Reporting Manager | Portal Reporting Manager | Has a medium-level role within the Reports module:
|
| Portal Reporting Viewer | Portal Reporting Viewer | A limited view of the Reports module:
|
| Portal Group Manager | Portal Group Manager | Provides access to the Groups module. As a Portal Group Manager, you:
Note: For on-premise deployments and some tenants, this group displays as Portal Role Manager. |
| Portal Group Viewer | Portal Group Viewer | Provides access to the Groups module As a Portal Group Viewer, you:
Note: For on-premise deployments and some tenants, this group displays as Portal Role Viewer. |
| Portal Sponsor | Portal Sponsorship Sponsor | Enables an individual to be a sponsor As a Portal Sponsor, you:
|
| Studio Administrator | Studio Admin | High-level access to the Studio module:
|
| Studio Auditor | Studio Auditor | Read-only access to the Studio module:
|
| Studio Operator | Studio Operator | Mid-level access to the Studio module:
|
| Tenant Administrator | Tenant Admin | Provides administrator access to the following RapidIdentity modules:
|
| System Administrator | System Admin | Note:This configuration is a special use case. More information is available in Grant Support Access. High-level access to the Configuration settings for a tenant:
|