User Permissions

The permissions applied to the LRCloud User Profile are listed here. This is the default "administrator" account provided to customers. 

Customers can create additional user profiles as necessary. There are no global administrator accounts available to the customer.

Last updated on December 3, 2021

SIEM version: 7.8.0

Entities

The primary site is granted permission by default. As the customer creates additional entities, they will also inherit the granted permission.

Log Sources Access Rights

Inherited by access to entities.

Data Processor Access Rights

All DPs are granted.

SR Plugins Access Rights

LRC does not preload any SmartResponse Plugins; no rights provided by default. Customers will be the owners of the SRPs when imported and they will inherit grant rights.

Management Permissions

Category

Privilege Name

View

Manage

Entities

Display / Manage Entities

(tick)

(tick)

Entities

Manage Re-Organization Wizard

(tick)

(tick)

System Monitor

Display / Manage System Monitor Agents

(tick)

(tick)

System Monitor

Manage Data Loss Defender Policies

(tick)

(tick)

System Monitor

Manage File Integrity Monitor Policies

(tick)

(tick)

System Monitor

Manage Real Time Integrity Monitor Policies

(tick)

(tick)

System Monitor

Display / Manage System Monitor Configuration Policy Manager

(tick)

(tick)

System Monitor

Manage Agent Upgrade Packages

(tick)

(tick)

Network Monitor

Manage Network Monitor

(tick)

(tick)

Log Sources

Display / Manage Log Sources

(tick)

(tick)

Log Sources

Windows Host Wizard

(tick)

(tick)

Log Sources

Manage Log Source Type

(tick)

(tick)

Log Sources

Manage Automatic Log Source Configuration

(tick)

(tick)

Log Sources

Manage Log Visualizations Template Policies

(tick)

(tick)

Log Sources

Manage Automatic Log Source Acceptance Rules

(tick)

(tick)

Data Processing

Manage Data Processors

(cross)

(cross)

Data Processing

Manage Log Processing Policies

(tick)

(tick)

Data Processing

Manage MPE Rules

(tick)

(tick)

Data Processing

Manage Common Events

(tick)

(tick)

Data Processing

Manage Application

(cross)

(cross)

Data Processing

Manage Common Event Change Manager

(tick)

(tick)

Data Processing

Manage Data Masking Rules

(tick)

(tick)

Data Processing

Manage Global Log Processing Policies

(tick)

(tick)

AI Engine

Manage AI Engines

(tick)

(tick)

AI Engine

Manage AI Engine Rules

(tick)

(tick)

AI Engine

Manage AI Engine Rule Actions

(tick)

(tick)

Lists and Filters

Display / Manage Lists

(tick)

(tick)

Lists and Filters

Manage Composite Filters

(tick)

(tick)

Search and Report

Display and Run Investigations

(tick)

(tick)

Search and Report

Display and Run Tails

(tick)

(tick)

Search and Report

Manage Report Templates, Reports and Report Packages

(tick)

(tick)

Search and Report

Manage Schedule Jobs for Reports

(tick)

(tick)

Search and Report

Manage SecondLook

(cross)

(cross)

Monitor and Alarm

Manage Alarm Rules

(tick)

(tick)

Monitor and Alarm

Manage Alarm Rule Actions

(tick)

(tick)

Monitor and Alarm

Manage Notifications

(tick)

(tick)

Monitor and Alarm

Display Personal Dashboard

(cross)

(cross)

Monitor and Alarm

Display Personal Alarms

(cross)

(cross)

Monitor and Alarm

Manage Global AI Engine Events

(tick)

(tick)

Monitor and Alarm

Display Alarm Viewer

(tick)

(tick)

Automate and Orchestrate

Manage Smart Response Plug-ins

(tick)

(tick)

Automate and Orchestrate

Manage LogRhythm Case Management

(tick)

(tick)

Users

Manage People and Users

(tick)

(tick)

Users

Manage User Profiles

(tick)

(tick)

Users

Manage User Preferences

(tick)

(tick)

Users

Manage Active Directory

(cross)

(cross)

Users

Manage Object Permissions

(cross)

(cross)

Users

Manage Security Manager

(cross)

(cross)

General Administration

Deployment Manager

(tick)

(cross)

General Administration

Manage Platform Managers

(cross)

(cross)

General Administration

Manage CloudAI Access

(tick)

(tick)

General Administration

Import and Manage Knowledgebase

(tick)

(tick)

General Administration

Manage TrueIdentity

(tick)

(tick)

General Administration

Manage LogRhythm API Access

(cross)

(cross)

General Administration

Manage License File Import

(cross)

(cross)

General Administration

Display License Report

(tick)

(cross)

General Administration

Database Usage Widget (Web Console)

(cross)

(cross)

General Administration

Component Status Widget (Web Console)

(cross)

(cross)

General Administration

Processing Widget (Web Console)

(tick)

(tick)

General Administration

Threat Widget (Web Console)

(tick)

(tick)

General Administration

Manage Tags (Web Console)

(tick)

(tick)

General Administration

Manage Case Widgets (Web Console)

(tick)

(tick)

General Administration

Manage All Cases (Web Console)

(tick)

(tick)

General Administration

Single Sign-On Management (Web Console)

(tick)

(tick)