Control RBAC permissions at the environment level in env zero to grant users or teams access to specific environments using custom roles.
In every organization, there is a need to establish custom permission assignments tailored to their specific needs. For example, when collaborating with outsourced teams, it becomes crucial to grant permissions exclusively to the areas they are directly involved in, without providing unnecessary access. To address this requirement, env zero lets you control RBAC Permissions all the way to the granularity of a specific environment.With this feature, administrators can precisely define permissions at the environment level, ensuring that users are granted access only to the environments directly relevant to their tasks. This capability offers organizations the flexibility to maintain security, optimize collaboration, and tailor permissions according to specific teams or projects
Role to control environment accessIn order to configure Environment Access, the assigning user needs to have the ASSIGN ROLE ON ENVIRONMENT permission.Project and Organization admins have that permission by default.Read more here
Navigate to an existing environment, and click on the ACCESS tab
While in that tab, you can assign access to either individual Users or entire Teams
On the two tables, you can see the entire collection of users and teams in your organization (respectively)
To assign one a role on the current environment, make sure the checkbox on the left-hand side is ticked, and select the role you wish to assign
Finally, hit “save”
And you’re good to go!
Project ViewWhen a user is given permissions to a specific environment - they can see all ancestor projects leading up to it. This is purely for traversal, and they won’t have any other permissions for those projects, so keep in mind this is not the same as them having VIEW PROJECT permissions for the project tree