Role privileges are separate components of the RBAC system. They define the level of dataset access that this role is allowed to grant to the roles on the privilege row.
Follow these steps to add role privileges to the role Test Role 1:
Add another privilege, by clicking the Add Privilege button.
The Add Privilege modal window appears.
Notice that the default privilege type is at the Connection level, but can be changed by selecting Role or Dataset from the list of Component Types.
From Roles(s), select either Visual Consumer, a role we defined previously.
After selecting the appropriate roles, click Create.
The Role privilege for the Visual Consumer role appears on the list of privileges.
By default, it contains all possible privileges for a role component:
Note the following:
The Grant view dashboards permission is mandatory if the other permissions exist, and cannot be removed.
However, if you uncheck both Grant manage dashboards and Grant manage dataset, then the Grant view dashboards permission becomes mutable and can be unselected.
The Grant manage dashboards permission is mandatory if Grant manage dataset permission is, and cannot be removed.
If you uncheck Grant manage dataset, it becomes mutable and can be unselected.
For the role permission on Visual Consumer, select only the Grant view dashboards permission.
Repeat the earlier steps twice more, creating the following privileges:
Note the following:
Next, proceed to Setting Connection Privileges.