Roles
Select User Management > Roles.
A role is a group of one or more Users.
For more information about users and roles in FME Flow, see Role-Based and User-Based Access Control.
The default columns displayed in the Roles table are:
- Name - Name of the role.
- Users - User accounts assigned to the role.
FME Flow provides a set of default roles:
Role | Description | User |
---|---|---|
fmeadmin |
Provides full access to FME Flow, including the Web User Interface. |
admin |
fmeauthor |
Provides workspace authors access to FME Flow to publish, author, and test new workspaces. |
author |
fmeguest |
Provides the minimal access to FME Flow required to run workspaces. |
guest |
fmesuperuser | Authorized to access all resources of FME Flow, including existing and newly-created resources. | admin |
fmeuser | Provides users access to the Web User Interface and Web Services. | user |
Adding and Removing Roles
To add a role, click New. Alternatively, select an existing role and click Duplicate. A dialog displays to add a new role. This dialog is similar to Configuring an Existing Role, below.
To remove a role, select it and click Remove.
Configuring an Existing Role
To configure an existing user role, click an entry in the Roles table. The Edit Role page opens. Configure the following settings, and click OK to save your changes.
Associated Users
To assign users to the role, click inside the field and select a user in the drop-down. To remove users from the role, click the "x" beside the user name.
Permissions
You can give a role access to different functions in FME Flow. Check the box beside a function to grant access.
Optionally, you can add permissions to match those from an existing role. Click Load Template. On the Load Template from Role dialog, select the role from which to load permissions, and click OK. This option adds any additional permissions that are not already granted. No permissions are removed. You can click Load Template multiple times to add permissions from more roles.
There are two levels of permissions:
- General: Allows users of the role to view the corresponding navigation link in the Web User Interface, along with select management functions, depending on the category. For example, if Access is checked beside Repositories, users can access the Repositories page. Additionally, if Create is checked, users can create repositories on the Repositories page.
- Item: Allows users of the role specific permissions on items within functional categories. To view items, click the drop-down icon of a category (v). For example, when you expand the Repositories category, you see the individual repositories on your FME Flow, along with the permissions that can be granted for each one.
The following is a detailed explanation of general- and item-level (where applicable) permissions for each category:
- Access: Access the Automations page, and list workflows and tags.
- Create: Create workflows.
- Read: View a workflow and its log file.
- Write: Edit or remove a workflow.
- Run: Start and stop a workflow.
- Apps: Run a workflow through an automation app.
- Webhooks: Access a URL generated by a Webhook trigger that requires authentication.
Individual Automations:
Manage: Access and manage Broadcast Messages.
- Access: Access the Database Connections and Web Connections pages.
- Create: Create connections.
- Manage: Access, create, and remove connections.
- Access: Manage web services.
Individual Connections:
- Access: Access the Dashboards page.
- Access: Access the Deployment Parameter Store.
- Create: Create deployment parameters.
- Read: Access a deployment parameter.
- Write: Edit a deployment parameter.
- Remove: Remove a deployment parameter.
Individual deployment parameters:
- Access: Access the Automation Apps page.
- Create: Create automation apps.
- Run: Run an automation app.
- Read: Access an automation app.
- Write: Edit or remove an automation app.
Individual Automation Apps:
- Access: Access the Gallery Apps page.
- Create: Create gallery apps.
- Run: Open links in a gallery app.
- Read: Access a gallery app.
- Write: Edit or remove a gallery app.
Individual Gallery Apps:
- Access: Access the Workspace Apps page.
- Create: Create workspace apps.
- Run: Run a workspace app.
- Read: Access a workspace app.
- Write: Edit or remove a workspace app.
Individual Workspace Apps:
- Access: Access the Jobs page to view the jobs you have run, or cancel any of your jobs that are currently running or in queue.
- Manage: Access and manage the jobs of all users. You can:
- Cancel any job that is currently running.
- Remove the history of jobs that were previously run.
- Manage: Licensing, Engines, and Deployment Status (Deprecated).
- Manage: Access Network & Email configurations, except Services.
- Upload: Allow publishing FME packages from FME Form to FME Flow.
- Access: Access the Projects page.
- Create: Create projects.
- Read: View information about a project.
- Write: Edit a project.
- Delete: Delete a project, or delete items from a project.
Individual Projects:
- Access: Access the Publications page.
- Create: Create Notification Service Publications.
- Read: View information about a publication.
- Write: Edit a publication.
- Remove: Delete a publication.
Individual Publications:
- Manage: Access to Queue Control, except engine assignment rules (also requires Manage permission in Licensing & Engines).
- Access: Access the Workspaces page.
- Create: Create repositories.
- Download: Download workspaces and other repository items from FME Flow into FME Workbench.
- Read: View repository information.
- Publish: Publish workspaces and other items to the repository from FME Workbench.
- Run: Run repository workspaces from FME Flow.
- Remove: Remove a repository, or remove items from a repository.
Individual Repositories:
- Access: Access the Resources page.
- Create: Create connections to network resources.
- Access: Read and download a file.
- List: List the folders and files of a resource.
- Write: Write to files.
- Upload: Upload files.
- Remove: Delete files.
Individual Resource connections (top-level folders):
- Access: Access the Run Workspace page.
- Advanced: Access Job Directives when running workspaces.
- Access: Access the Schedules page.
- Create: Create schedules.
- Full Access: Edit or delete a schedule.
Individual Schedules:
- Manage: Access to Security configurations.
- Manage: Configure the FME Flow services.
- Full Access: Manage FME Flow services.
Individual Services:
- Access: Access the Streams page.
- Create: Create streams.
- Read: View a stream.
- Write: Edit or remove a stream.
Individual Streams:
- Access: Access the Subscriptions page.
- Create: Create Notification Service Subscriptions.
- Read: View information about a subscription.
- Write: Edit a subscription.
- Remove: Delete a subscription.
Individual Subscriptions:
- Manage: Configure system cleanup.
- Manage: Configure System Events.
- Access: Access the Topics page.
- Create: Create topics.
- Read: View information about a topic.
- Write: Edit a topic.
- Publish: Publish notifications to a topic.
- Remove: Delete a topic.
Individual Topics:
- Manage: Configure users and roles.
- Access: Commit versions and view repository history.
- Manage: Enable version control and configure with a remote Git repository.