Role privileges are separate components of the RBAC system. They define the level of dataset access that this role is allowed to gant to the roles on the privelege row.
Add another privilege, by clicking the Add Privilege button.
The Add Privilege modal window appears.
Notice that the default privilege type is at the Connection level, but can be changed by selecting Role or Dataset from the list of Component Types.
From Roles(s), select either Visual Consumer, a role we defined previously.
After selecting the appropriate roles, click Create.
The Role privilege for the Visual Consumer role appears on the list of privileges.
By default, it contains all possible privileges for a role component:
Note the following:
The Grant view dashboards permission is mandatory if the other permissions exist, and cannot be removed.
However, if you uncheck both Grant manage dashboards and Grant manage dataset, then the Grant view dashboards permission becomes mutable and can be unselected.
The Grant manage dashboards permission is mandatory if Grant manage dataset permission is, and cannot be removed.
If you uncheck Grant manage dataset, it becomes mutable and can be unselected.
For the role permision on Visual Consumer, select only the Grant view dashboards permission.
Note the following:
Next, proceed to Setting Connection Privileges.