Jump to content

How to Restrict Policy Modification in KSC Using a Custom Role [KSC for Windows]


Description

You may want to allow certain users to do everything, but without giving them access to modify policies, manage users, or assign roles. However, when using default roles provided by KSC, some permissions are either too broad or unchangeable.

Steps to Create the Custom Role:

  1. Open Kaspersky Security Center.
  2. Go to Administration Server Properties → Users Roles.

image.thumb.png.a485fbcc96fc96c7ec5d5f3bd5021718.png

  1. Click “Add” to create a new role.
  2. Enter a role name (e.g., Rule for Hospitals).
  3. In the Rights tab:
    • Allow the necessary permissions such as:
      • View reports
      • Run tasks
      • Monitor devices
    • Do not grant permissions related to:
      • Policy creation
      • Policy editing
      • Policy assignment

image.thumb.png.9c93b9b41691ecc07bd11805af9d9b4a.png

  1. Click OK to save the role.

Assign the Role:

  1. Go to Security → Users.
  2. Select the user or group who needs restricted access.
  3. Assign the newly created role (Rule for Hospitals) to them.

image.thumb.png.e8e3844590bf53fb10d1715df1389c29.png

Result:

  • The user can perform routine operations like monitoring, Running tasks and Reporting.
  • The user cannot:
    • Modify policies

image.thumb.png.373d73337768be7c9dd23f447159e223.png

    • Manage or assign users and roles

image.thumb.png.3b7fc5bac1d8a663d983c5922c26f8ca.png

  • Ensures security, compliance, and accountability across the KSC environment.

image.png

0 Comments


Recommended Comments

There are no comments to display.

Please sign in to comment

You will be able to leave a comment after signing in



Sign In Now


×
×
  • Create New...