Installation guide
15-19
Device Manager Guide, Cisco ACE 4700 Series Application Control Engine Appliance
OL-26645-02
Chapter 15 Managing the ACE Appliance
Managing User Roles
Role Mapping in ACE Appliance Device Manager
When you are logged into ACE Appliance Device Manager, you see the tasks that you have been given
permission to access. Table 15-5 describes the predefined roles and the menu tasks and features available
to those roles. Features and menus that are not applicable for your role will not display.
Since the predefined roles encompass all the role types you may need, we encourage you to use them. If
you choose to define your own roles, be aware that rules features are not a one-to-one mapping from CLI
feature to ACE Appliance Device Manager menu task.
Defining the proper rules for your user-defined role will require you to create a mapping between the
features in Table 15-4 and the ACE Appliance Device Manager menu tasks. For example, in order to
manage virtual servers, you must select the following six menu features (Real Servers, Server Farms,
VIP, Probes, Load Balancing, NAT, and Interface) in your role.
Note There are certain features in the ACE Appliance Device Manager that do not have a corresponding
feature mapping on the CLI. One example of this feature is class maps. To modify these features you
need to select a predefined role that a contains at least one feature with the Modify permission on it.
For details on predefined roles and their default privileges, see Table 15-4.