Roles

Roles (PSROLEDEFN) are named bundles of permission lists. Users get roles, not permission lists directly.

Roles

URL: /roles

Roles (PSROLEDEFN) are named bundles of permission lists. Users get roles, not permission lists directly.

Walkthrough: Exploring Roles in psLens
Role detail page showing included permission lists, assigned users, and aggregated access

Role detail page with the permission lists, users, and aggregate access needed to understand what the role actually grants

What You Can Do

  • View Included Permission Lists: See the list of permission lists assigned to the role.
  • View Assigned Users: See which users are assigned this role.
  • View Authorizations: See the aggregated Tools Access, Service Operations, Component Interfaces, Component & Page Access, Query Tree Tables, and Web Libraries granted by the permission lists assigned to the role.
  • Metadata Inspection: See the role’s description and last modified information.

When It’s Useful

  • Understanding what an unfamiliar role grants.
  • Checking whether a role contains permission lists that are unexpectedly broad.
  • Finding all users who have a particular role.