Here's my current thoughts on roles for the Cirrus website. I want to get some feedback on whether you think this would be sufficient. I'm trying for a minimalist approach on roles so we can do more cool stuff with the website. For the sake of the roles discussion, let's assume for now that we're talking about a view-only website.
Issues or concerns with this approach?
Role Name | Capabilities |
Web Viewer | · Users granted this role can login to the website and view any report that is displayed in the Cirrus website. · The user is NOT be able to view entire configurations and jobs |
Privileged Web Viewer | · Users granted this role can do everything that Web Viewer can do + · User can view entire configurations and jobs · This user is NOT able to access Admin area |
Admin Web | · Everything that Privileged Web Viewer can do + · User can access the Admin area for configuring the website settings. |