User Permissions
The permissions applied to the LRCloud User Profile are listed here. This is the default "administrator" account provided to customers.
Customers can create additional user profiles as necessary. There are no global administrator accounts available to the customer.
Last updated on December 3, 2021
SIEM version: 7.8.0
Entities
The primary site is granted permission by default. As the customer creates additional entities, they will also inherit the granted permission.
Log Sources Access Rights
Inherited by access to entities.
Data Processor Access Rights
All DPs are granted.
SR Plugins Access Rights
LRC does not preload any SmartResponse Plugins; no rights provided by default. Customers will be the owners of the SRPs when imported and they will inherit grant rights.
Management Permissions
Category | Privilege Name | View | Manage |
---|---|---|---|
Entities | Display / Manage Entities | ||
Entities | Manage Re-Organization Wizard | ||
System Monitor | Display / Manage System Monitor Agents | ||
System Monitor | Manage Data Loss Defender Policies | ||
System Monitor | Manage File Integrity Monitor Policies | ||
System Monitor | Manage Real Time Integrity Monitor Policies | ||
System Monitor | Display / Manage System Monitor Configuration Policy Manager | ||
System Monitor | Manage Agent Upgrade Packages | ||
Network Monitor | Manage Network Monitor | ||
Log Sources | Display / Manage Log Sources | ||
Log Sources | Windows Host Wizard | ||
Log Sources | Manage Log Source Type | ||
Log Sources | Manage Automatic Log Source Configuration | ||
Log Sources | Manage Log Visualizations Template Policies | ||
Log Sources | Manage Automatic Log Source Acceptance Rules | ||
Data Processing | Manage Data Processors | ||
Data Processing | Manage Log Processing Policies | ||
Data Processing | Manage MPE Rules | ||
Data Processing | Manage Common Events | ||
Data Processing | Manage Application | ||
Data Processing | Manage Common Event Change Manager | ||
Data Processing | Manage Data Masking Rules | ||
Data Processing | Manage Global Log Processing Policies | ||
AI Engine | Manage AI Engines | ||
AI Engine | Manage AI Engine Rules | ||
AI Engine | Manage AI Engine Rule Actions | ||
Lists and Filters | Display / Manage Lists | ||
Lists and Filters | Manage Composite Filters | ||
Search and Report | Display and Run Investigations | ||
Search and Report | Display and Run Tails | ||
Search and Report | Manage Report Templates, Reports and Report Packages | ||
Search and Report | Manage Schedule Jobs for Reports | ||
Search and Report | Manage SecondLook | ||
Monitor and Alarm | Manage Alarm Rules | ||
Monitor and Alarm | Manage Alarm Rule Actions | ||
Monitor and Alarm | Manage Notifications | ||
Monitor and Alarm | Display Personal Dashboard | ||
Monitor and Alarm | Display Personal Alarms | ||
Monitor and Alarm | Manage Global AI Engine Events | ||
Monitor and Alarm | Display Alarm Viewer | ||
Automate and Orchestrate | Manage Smart Response Plug-ins | ||
Automate and Orchestrate | Manage LogRhythm Case Management | ||
Users | Manage People and Users | ||
Users | Manage User Profiles | ||
Users | Manage User Preferences | ||
Users | Manage Active Directory | ||
Users | Manage Object Permissions | ||
Users | Manage Security Manager | ||
General Administration | Deployment Manager | ||
General Administration | Manage Platform Managers | ||
General Administration | Manage CloudAI Access | ||
General Administration | Import and Manage Knowledgebase | ||
General Administration | Manage TrueIdentity | ||
General Administration | Manage LogRhythm API Access | ||
General Administration | Manage License File Import | ||
General Administration | Display License Report | ||
General Administration | Database Usage Widget (Web Console) | ||
General Administration | Component Status Widget (Web Console) | ||
General Administration | Processing Widget (Web Console) | ||
General Administration | Threat Widget (Web Console) | ||
General Administration | Manage Tags (Web Console) | ||
General Administration | Manage Case Widgets (Web Console) | ||
General Administration | Manage All Cases (Web Console) | ||
General Administration | Single Sign-On Management (Web Console) |