From Skylight orchestrator, you can configure users on devices. Those users will belong to a user group that has a particular set of permissions. The Permission groups configuration job allows to define the permissions for user groups on devices. You may choose to give a user group the permissions to perform certain tasks such as updating firmware, configuring or OAM. You can also define user groups that have full access to all features.
Note: You must define permission groups before defining user accounts.
To set up a Permission groups job
-
Access the page Commission â–¶ Jobs.
-
Set all common configuration job settings, as described in "Creating Configuration Jobs in GUI Mode" and in "Creating Configuration Jobs Using Data Sets".
-
Select Permission groups in the left pane. The Permission groups tab is displayed.
-
Complete all fields of the Permission groups tab as required. For more information on specific parameters, see the table below.
-
Use the Add
button or Duplicate
button to add Permission groups settings as required.
Note: When duplicating a row, always select the row to duplicate before clicking the Duplicate
button.-
Click Apply, then click Close.
-
Click the Refresh
button to refresh the user interface.
Permission groups tab (Commission â–¶ Jobs)
Permission group general
| Parameter | Description |
|---|---|
| Group name | The name of the user permission group. |
| All-add | Permission to add in all sections that are viewable. |
| All-edit | Permission to edit in all sections that are viewable. |
| All-enable | Permission to enable in all sections that are viewable. |
OAM
| Parameter | Description |
|---|---|
| Link-OAM | Add/Edit/Enable OAM and loopback (Ethernet OAM links). |
| PAA | Add/Edit/Enable Performance Assurance Agent instances. |
| CFM | Add/Edit the SOAM CFM feature. |
| TWAMP | Edit/Enable TWAMP settings. |
| Service Availability | Add/Edit/Enable service availability instances. |
SAT
| Parameter | Description |
|---|---|
| RFC-2544 | Add/Edit/Enable entities related to RFC-2544 testing. |
| Y.1564 | Add/Edit/Enable entities related to Y.1564 testing. |
| SAT-Reporting | Edit/Enable entities related to Service Activation Testing reporting. |
| SAT-Protocol | Add/Edit/Enable entitites related to the Service Activation Testing protocol. |
Traffic
| Parameter | Description |
|---|---|
| Filters | Add/Edit Layer-2 filters, IPv4 filters, IPv6 filters and VLAN filters and vid-sets. |
| Flow | Add/Edit flows. |
| Flowmeter | Edit/Show flowmeter information. |
| Flow broker | Edit/Show flow broker information. |
| L2PT | Add/Edit Layer 2 protocol tunneling rules. |
| Policies | Add/Edit/Enable policies for filtering traffic. |
| Port | Add/Edit/Enable port configurations:
|
| Shaping | Add/Edit traffic shaper database. |
| Traffic | Edit/Enable VLAN encapsulation settings:
|
| Protection | Add/Edit/Enable protection related to:
|
System
| Parameter | Description |
|---|---|
| ACL | Edit/Enable ACL settings. |
| Alarms | Edit/Add/Enable alarm reporting configurations. |
| Config | Import/Export configuration files through CLI. |
| Firmware | Upgrade the firmware. |
| History | Edit the history bucket statistics. |
| Log | Edit syslog configuration and view logged entries. |
| Management | Edit/Add management access to the unit:
|
| Service Mapping | Add/Edit CoS profiles and bandwidth regulator sets:
|
| Sessions | Manage sessions and edit session configuration:
|
| Users | Edit/Add and manage user accounts and permissions:
|
© 2025 Cisco and/or its affiliates. All rights reserved.
For more information about trademarks, please visit: Cisco trademarks
For more information about legal terms, please visit: Cisco legal terms
For legal information about Accedian Skylight products, please visit: Accedian legal terms and trademarks
