Setting Up a Permission Group Configuration Job

Prev Next

From Legacy Orchestrator, you can configure users on devices. Those users will belong to a user group that has a particular set of permissions. The Permission groups configuration job allows to define the permissions for user groups on devices. You may choose to give a user group the permissions to perform certain tasks such as updating firmware, configuring or OAM. You can also define user groups that have full access to all features.


Note: You must define permission groups before defining user accounts.

To set up a Permission groups job

  1. Access the page Commission â–¶ Jobs.

  2. Set all common configuration job settings, as described in "Creating Configuration Jobs in GUI Mode" and in "Creating Configuration Jobs Using Data Sets".

  3. Select Permission groups in the left pane. The Permission groups tab is displayed.
    Setting Up a Permission Group Configuration Job.png

  4. Complete all fields of the Permission groups tab as required. For more information on specific parameters, see the table below.

  5. Use the Add PLUS BUTTON.png button or Duplicate DUPLICATE BUTTON.png button to add Permission groups settings as required.


Note: When duplicating a row, always select the row to duplicate before clicking the Duplicate DUPLICATE BUTTON.png button.

  1. Click Apply, then click Close.

  2. Click the Refresh REFRESH BUTTON.png button to refresh the user interface.

Permission groups tab (Commission â–¶ Jobs)
Permission group general

Parameter Description
Group name The name of the user permission group.
All-add Permission to add in all sections that are viewable.
All-edit Permission to edit in all sections that are viewable.
All-enable Permission to enable in all sections that are viewable.

OAM

Parameter Description
Link-OAM Add/Edit/Enable OAM and loopback (Ethernet OAM links).
PAA Add/Edit/Enable Performance Assurance Agent instances.
CFM Add/Edit the SOAM CFM feature.
TWAMP Edit/Enable TWAMP settings.
Service Availability Add/Edit/Enable service availability instances.

SAT

Parameter Description
RFC-2544 Add/Edit/Enable entities related to RFC-2544 testing.
Y.1564 Add/Edit/Enable entities related to Y.1564 testing.
SAT-Reporting Edit/Enable entities related to Service Activation Testing reporting.
SAT-Protocol Add/Edit/Enable entitites related to the Service Activation Testing protocol.

Traffic

Parameter Description
Filters Add/Edit Layer-2 filters, IPv4 filters, IPv6 filters and VLAN filters and vid-sets.
Flow Add/Edit flows.
Flowmeter Edit/Show flowmeter information.
Flow broker Edit/Show flow broker information.
L2PT Add/Edit Layer 2 protocol tunneling rules.
Policies Add/Edit/Enable policies for filtering traffic.
Port Add/Edit/Enable port configurations:
  • cable-test
  • media-selection
  • port
  • statistics
  • fault-propagation
Shaping Add/Edit traffic shaper database.
Traffic Edit/Enable VLAN encapsulation settings:
  • forwarding
Protection Add/Edit/Enable protection related to:
  • LACP
  • ERP

System

Parameter Description
ACL Edit/Enable ACL settings.
Alarms Edit/Add/Enable alarm reporting configurations.
Config Import/Export configuration files through CLI.
Firmware Upgrade the firmware.
History Edit the history bucket statistics.
Log Edit syslog configuration and view logged entries.
Management Edit/Add management access to the unit:
  • bridge
  • console
  • dns
  • interface
  • mode admin
  • motd
  • mtr
  • ntp
  • ptp
  • route
  • sfp
  • snmp
  • snmp-trap
Service Mapping Add/Edit CoS profiles and bandwidth regulator sets:
  • bandwidth-regulator
  • cos-profile
  • regulator-set
Sessions Manage sessions and edit session configuration:
  • RADIUS
  • TACACS+
  • reboot
  • session
Users Edit/Add and manage user accounts and permissions:
  • permission-group
  • user

© 2025 Cisco and/or its affiliates. All rights reserved.
 
For more information about trademarks, please visit: Cisco trademarks
For more information about legal terms, please visit: Cisco legal terms

For legal information about Accedian Skylight products, please visit: Accedian legal terms and tradmarks