From Legacy Orchestrator, you can configure users on devices. Those users will belong to a user group that has a particular set of permissions. The Permission groups configuration job allows to define the permissions for user groups on devices. You may choose to give a user group the permissions to perform certain tasks such as updating firmware, configuring or OAM. You can also define user groups that have full access to all features.
Note: You must define permission groups before defining user accounts.
To set up a Permission groups job
-
Access the page Commission â–¶ Jobs.
-
Set all common configuration job settings, as described in "Creating Configuration Jobs in GUI Mode" and in "Creating Configuration Jobs Using Data Sets".
-
Select Permission groups in the left pane. The Permission groups tab is displayed.
-
Complete all fields of the Permission groups tab as required. For more information on specific parameters, see the table below.
-
Use the Add
button or Duplicate
button to add Permission groups settings as required.
Note: When duplicating a row, always select the row to duplicate before clicking the Duplicate

-
Click Apply, then click Close.
-
Click the Refresh
button to refresh the user interface.
Permission groups tab (Commission â–¶ Jobs)
Permission group general
Parameter | Description |
---|---|
Group name | The name of the user permission group. |
All-add | Permission to add in all sections that are viewable. |
All-edit | Permission to edit in all sections that are viewable. |
All-enable | Permission to enable in all sections that are viewable. |
OAM
Parameter | Description |
---|---|
Link-OAM | Add/Edit/Enable OAM and loopback (Ethernet OAM links). |
PAA | Add/Edit/Enable Performance Assurance Agent instances. |
CFM | Add/Edit the SOAM CFM feature. |
TWAMP | Edit/Enable TWAMP settings. |
Service Availability | Add/Edit/Enable service availability instances. |
SAT
Parameter | Description |
---|---|
RFC-2544 | Add/Edit/Enable entities related to RFC-2544 testing. |
Y.1564 | Add/Edit/Enable entities related to Y.1564 testing. |
SAT-Reporting | Edit/Enable entities related to Service Activation Testing reporting. |
SAT-Protocol | Add/Edit/Enable entitites related to the Service Activation Testing protocol. |
Traffic
Parameter | Description |
---|---|
Filters | Add/Edit Layer-2 filters, IPv4 filters, IPv6 filters and VLAN filters and vid-sets. |
Flow | Add/Edit flows. |
Flowmeter | Edit/Show flowmeter information. |
Flow broker | Edit/Show flow broker information. |
L2PT | Add/Edit Layer 2 protocol tunneling rules. |
Policies | Add/Edit/Enable policies for filtering traffic. |
Port | Add/Edit/Enable port configurations:
|
Shaping | Add/Edit traffic shaper database. |
Traffic | Edit/Enable VLAN encapsulation settings:
|
Protection | Add/Edit/Enable protection related to:
|
System
Parameter | Description |
---|---|
ACL | Edit/Enable ACL settings. |
Alarms | Edit/Add/Enable alarm reporting configurations. |
Config | Import/Export configuration files through CLI. |
Firmware | Upgrade the firmware. |
History | Edit the history bucket statistics. |
Log | Edit syslog configuration and view logged entries. |
Management | Edit/Add management access to the unit:
|
Service Mapping | Add/Edit CoS profiles and bandwidth regulator sets:
|
Sessions | Manage sessions and edit session configuration:
|
Users | Edit/Add and manage user accounts and permissions:
|
© 2025 Cisco and/or its affiliates. All rights reserved.
For more information about trademarks, please visit: Cisco trademarks
For more information about legal terms, please visit: Cisco legal terms
For legal information about Accedian Skylight products, please visit: Accedian legal terms and tradmarks