Cloud Configuration Governance roles and system properties
Cloud Configuration Governance users require the appropriate roles and system properties to perform various activities. These roles and system properties are installed with the activation of the application.
Only users with the user_admin or admin role can create users with these roles:
| Descriptive name and role name | Description and tasks | Nested roles |
|---|---|---|
| sn\_itom\_ccg.scheduling\_admin | A scheduling admin can perform the following actions:- Create scan schedules. - Create CI finder mappings. | discovery\_admin |
| sn\_itom\_ccg.governor | A governor can perform the following actions:- Create policies by using condition builder, Integration Hub flows, or script. - Create a policy set. - Create resource collectors. - Create configuration keys. - Create remediation. - Create CI finder mappings. | - flow\_designer - action\_designer - catalog\_admin |
| sn\_itom\_ccg.ccg\_operator | An operator can perform the following actions:- View the audit issue reports. - Run remediation. - Run scan configurations. - View the dashboard. | - flow\_operator - sn\_change\_write |
| sn\_itom\_ccg.report\_viewer | A report viewer can perform the following actions:- View the audit issue reports. - View the dashboard. |
| Property name | Description |
|---|---|
| snc_af.log_level | When you enable this property, Cloud Configuration Governance writes the logs to the syslog.The supported logging levels are as follows:
Ensure that the application scope is Global, when you set or clear this property. |
Parent Topic:Cloud Configuration Governance reference
Related topics