Skip to content

Adding and removing roles

Users (or groups) can be granted various roles on any managed endpoint, with each role granting the user (or group) different privileges with respect to that endpoint.

Role types

The following roles are supported on managed endpoints:

Administrator

  • Has full control over the endpoint
  • Can delete endpoint definition
  • Can see the endpoint definition even if set to private
  • Can manage roles for endpoint
  • Can be granted by other administrators. The creator of the endpoint is granted Administrator role by default
  • Has Access Manager and Activity Manager capabilities inherited

Activity Manager

  • Has full access to the Management Console for the endpoint and Activity Monitor capabilities
  • Can see endpoint definition even if set to private
  • Can be granted by any user who has Administrator role on the endpoint

Activity Monitor

  • Has read only access to the Management Console for the endpoint
  • Can see endpoint definition even if set to private
  • Can be granted by any user who has Administrator role on the endpoint

Access Manager

  • Can manage permissions on any endpoints that supports sharing
  • Has read/write access to folders and files on the endpoint
  • Cannot see endpoint definition if it is set to private
  • Can be granted by any user who has Administrator role on the endpoint
  • Does not have Activity Manager and/or Activity Monitor capabilities without being granted such explicitly

Adding a role

Endpoint Administrator

If you are not an administrator of the Endpoint, you will not see the Roles tab mentioned below. Only Endpoint administrators have the ability to add roles.

To add a role to your Globus Endpoint, click Endpoint followed by the Administered By You tab and finally the name of the Endpoint. In this example, we are going to assign a Access Manager role within the ITSR-Testing Endpoint.

adding roles

Click the Roles tab and then the Assign New Role button.

adding roles

Enter the username or select a pre-defined group then select the required role. Finally, click Add Role.

adding roles

You can check what level of access a user has on the Endpoint by visiting the Roles tab.

adding roles

Removing a role

Endpoint Administrator

If you are not an administrator of the Endpoint, you will not see the Roles tab mentioned below. Only Endpoint administrators have the ability to remove roles.

To remove a role from your Globus Endpoint, click Endpoint followed by the Administered By You tab and finally the name of the Endpoint. In this example, we are going to remove a Access Manager role within the ITSR-Testing Endpoint.

removing roles

Click the Roles tab and then the delete icon in the collaborator's role row.

removing roles

Click the Remove button to confirm the role removal.

removing roles