Service Permissions


Different access permissions such as read, write, delete, control, and full-access can be given to resources for EnOS services listed below.

  • Asset
  • Asset Tree
  • Model
  • Device Management Service
  • Resource Management
  • Product
  • Certificate
  • Firmware


Depending on the service, access permissions can be narrowed down to specific resources by a combination of the below.

  • Resource: Resources include assets, asset trees, models, etc., which can be granted permissions for actions such as read, write, delete, etc.
  • Action: The action for the resource to grant permissions for.

Asset

Grants access permissions for assets.

Procedure

  1. If this service is not listed as a tab, click New Service > Asset.

  2. Under the Asset tab, configure the below as per required.

    • Resource: Select to grant access permission for All assets or Assign specific assets by selecting one or multiple asset trees from the list below. The access permission will be granted to all assets under the asset tree.
    • Action: Select one or more permissions to grant.
      • Read: Read-only access to asset details.
      • Write: Update asset details and attributes.
      • Control: Issue commands to assets.


  3. Click Add Statement to customize additional asset permissions.

  4. Once done, click Save.

Asset Tree

Grants access permissions for asset trees.

Procedure

  1. If this service is not listed as a tab, click New Service > Asset Tree.

  2. Under the Asset Tree tab, configure the below as per required.

    • Resource: Only one option is available. This will grant permissions to all asset trees.
    • Action: Select one or more permissions to grant.
      • Read: Read-only access to asset tree details.
      • Full Access: All permissions required to manage asset trees.


  3. Click Add Statement to customize additional asset tree permissions.

  4. Once done, click Save.

Model

Grants access permissions for models.

Procedure

  1. If this service is not listed as a tab, click New Service > Model.

  2. Under the Model tab, configure the below as per required.

    • Resource: Only one option is available. This will grant permissions to all models.
    • Action: Select one or more permissions to grant.
      • Read: Read-only access to model details.
      • Delete: Delete models.
      • Create: Create models.
      • Update: Update models.


  3. Click Add Statement to customize additional model permissions.

  4. Once done, click Save.

Device Management Service

Grants access permissions for devices.

Procedure

  1. If this service is not listed as a tab, click New Service > Device Management Service.

  2. Under the Device Management Service tab, configure the below as per required.

    • Resource: Only one option is available. This will grant permissions to all devices.
    • Action: Select one or more permissions to grant.
      • Read: Read-only access to device details.
      • Full Access: All permissions required to manage devices.


  3. Click Add Statement to customize additional device permissions.

  4. Once done, click Save.

Resource Management

Grants permissions for resources.

Procedure

  1. If this service is not listed as a tab, click New Service > Resource Management.
  2. Under the Resource Management tab, configure the below as per required.
    • Resource: Select to grant access permission for All resources or Assign specific resources by selecting one or multiple resources from the list below.
    • Action: Select one or more permissions to grant.
      • Full Access: Allocate and manage all permissions for computing resources and storage resources in the OU.
  3. Click Add Statement to customize additional resource permissions.
  4. Once done, click Save.

Product

Grants permissions for products.

Procedure

  1. If this service is not listed as a tab, click New Service > Product.

  2. Under the Product tab, configure the below as per required.

    • Resource: Only one option is available. This will grant permissions to all products.
    • Action: Select one or more permissions to grant.
      • Create: Create products.
      • Update: Update product details.
      • Delete: Delete models.
      • Read: Read-only access to product details.


  3. Click Add Statement to customize additional permissions.

  4. Once done, click Save.

Certificate

Grants permissions for certificates.

Procedure

  1. If this service is not listed as a tab, click New Service > Certificate.

  2. Under the Certificate tab, configure the below as per required.

    • Resource: Only one option is available. This will grant permissions to all certificates.
    • Action: Select one or more permissions to grant.
      • Apply: Apply certificates.
      • Renew: Renew certificates.
      • Revoke: Revoke certificates.
      • Read: Read-only access to certificate details.


  3. Click Add Statement to customize additional permissions.

  4. Once done, click Save.

Firmware

Grants permissions for firmware and OTA jobs.

Procedure

  1. If this service is not listed as a tab, click New Service > Firmware.

  2. Under the Firmware tab, configure the below as per required.

    • Resource: Only one option is available. This will grant permissions to all devices.
    • Action: Select one or more permissions to grant.
      • Read: Read-only access to firmware details.
      • Create: Create firmware.
      • Update: Update firmware.
      • Delete: Delete firmware.
      • ReadOTA: Read-only access to OTA jobs.
      • CreateOTA: Create OTA jobs.
      • ControlOTA: Start/end OTA jobs and cancel/retry OTA tasks.
      • DeleteOTA: Delete OTA jobs.


  3. Click Add Statement to customize additional permissions.

  4. Once done, click Save.