Skip to Content

Overview

You can manage various administrator roles within QueryPie in the Roles page.

This document provides guidance on administrator role configuration, policy types, and administrator role management methods.

Administrator Role Configuration

Administrator roles are composed of roles and policies.

  • Administrator Role (Role) : A unit granted to users, which is a collection of policies.
    • Default provided roles are marked as Created by System.
      • The Owner role has permissions for the entire QueryPie system and changes and deletions are restricted.
      • Other roles can be modified and utilized as needed.
    • In addition to default provided roles, users can directly create roles.
  • Administrator Policy (Policy) : A collection of Permissions
    • Individual policies are defined as individual menu access permissions and detailed function execution permissions within the administrator page.
    • Addition, modification, and deletion at the policy level are not possible.

Viewing Administrator Role List

You can view currently registered administrator roles in the Roles page. You can search by name.

  • Administrator roles provided by default in QueryPie have Created by value marked as System.

Administrator > General > User Management > Roles

Administrator > General > User Management > Roles

The Owner role is an administrator role that can access the entire QueryPie system and cannot be changed or deleted.

Viewing Administrator Role Details

Click on the role you want to view details for in the Roles list to enter the detail page.

Administrator > General > User Management > Roles > List Details

Administrator > General > User Management > Roles > List Details

The Detail tab displays the list of policies assigned to the administrator role currently being viewed.

Assigning Policies to Administrator Roles

  1. In the Roles list, click on the administrator role you want to assign additional policies to enter the detail page. Click the Assign Policies button to open the modal.
  2. The modal displays a list of policies not currently assigned to that role. Click on the desired policy to add it, then click the Assign button to save.

screenshot-20240726-131834.png

  1. You can check the list of additionally assigned policies in the administrator role detail page.

Removing Policies from Administrator Roles

Enter the detail page of the administrator role you want to remove policies from in the Roles list. Select the policy you want to remove with a checkbox in the policy list in the Detail tab, then click the Delete button. Click the OK button in the confirmation modal to complete policy removal.

Administrator > General > User Management > Roles > List Details

Administrator > General > User Management > Roles > List Details

Modifying Administrator Roles

Enter the detail page of the administrator role you want to modify in the Roles list. Click the Edit button to open the modification modal, where you can modify the name and description.

Role Modification Modal

Role Modification Modal

Deleting Administrator Roles

Two methods are provided for deleting administrator roles that are no longer used.

When an administrator role is deleted, that role is immediately revoked from users who had previously been assigned that role. Administrator role deletion cannot be undone, so please execute carefully.

screenshot-20240726-132448.png

Deleting from Administrator Role List

Select the role you want to delete with a checkbox in the Roles list, then click the Delete button displayed in the table header. In the confirmation modal, correctly enter the deletion confirmation phrase “DELETE” and click the Delete button to complete administrator role deletion.

Administrator > General > User Management > Roles

Administrator > General > User Management > Roles

Deleting from Administrator Role Detail Page

Enter the detail page of the administrator role you want to delete in the Roles list. Click the Delete button to open the deletion confirmation modal, then correctly enter the deletion confirmation phrase “DELETE” and click the Delete button to complete administrator role deletion.

Administrator > General > User Management > Roles > List Details

Administrator > General > User Management > Roles > List Details

Reference) Types of Administrator Policies

You can check the permission content for each administrator policy and QueryPie product license information required to activate that policy in the list below.

Policy NameDescriptionLicense
User Management Full AccessCan access and modify Users and Groups menu.Default
User Management Read OnlyCan access Users and Groups menu.Default
Group Management Full AccessCan access and modify Group menuDefault
Group Management Read OnlyCan access Groups menuDefault
General Setting Full AccessCan access and modify General menu.Default
Security Setting Full AccessCan access and modify Security menu.Default
Allowed Zone Full AccessCan access and modify Allowed Zones menu.Default
Alert Setting Full AccessCan access and modify Alert menu.Default
Channel Setting Full AccessCan access and modify Channel menu.Default
License Page Full AccessCan access License menu.Default
Authentication Setting Full AccessCan access and modify Authentication menu.Default
Workflow Lists Full AccessCan access All Requests menu.Default
Approval Rule Setting Full AccessCan access and modify Approval menu.Default
API Token Setting Full AccessCan access and modify API Token menu.Default
Job Page Full AccessCan access Jobs menu.Default
Integration Page Full AccessCan access and modify Integration menu.Default
System Properties Full AccessCan access System Properties menu.Default
Database Connection Management Full AccessCan access and modify Connection Management menu.DAC Only
Database Access Control Full AccessCan access and modify DB Access Control menu.DAC Only
Database Policy Management Full AccessCan access and modify Database Policies menu.DAC Only
Proxy Management Full AccessCan access Proxy Management menu.DAC Only
Database Ledger Policy Full AccessCan access and modify Ledger Management menu.DAC Only
Masking Pattern Setting Full AccessCan access and modify Masking Pattern menu.DAC Only
Server Connection Management Full AccessCan access and modify Server Management menu.SAC Only
Server Access Control Full AccessCan access and modify Server Access Control menu.SAC Only
General Audit Full AccessCan access General Audit menu and export logs and report.Default
Database Audit Full AccessCan access Database Audit menu and export logs and report.DAC Only
Server Audit Full AccessCan access Server Audit menu and export logs and report.SAC Only
DB Access Request Approval PermissionCan access and modify Profile Editor setting.DAC Only
SQL Request Approval PermissionCan approve SQL Request as an approver.DAC Only
SQL Export Request Approval PermissionCan approve Data Export Request as an approver.DAC Only
Server Access Request Approval PermissionCan approve Server Access Request as an approver.SAC Only
Access Role Request Approval PermissionCan approve Access Role Request as an approver.SAC or KAC
SCIM Provisioning and API Token Management AccessCan manage SCIM Provisioning status and API Token.Default
Kubernetes Connection Management Full AccessCan access and modify Connection Management menuKAC
Kubernetes Access Control Full AccessCan access and modify Kubernetes Access Control menuKAC
Kubernetes Audit Full AccessCan access Kubernetes Audit menu and export logs and reportKAC
Discovery Management Full AccessCan access and modify Discovery menuDD
Last updated on