In this step, a superuser sets the privileges administrators are allowed to set for organization users.
Logon as superuser.
Navigate to the Superuser > Admin Class page.
Select an existing admin class.
Click the User Class Mappings link.
The mapping of a specific admin class to a specific user class determines the privileges that administrators in a linked admin group can set for that user class.
Admin Groups Admin Classes User Classes Organization
Review the descriptions for Categories of Data Objects and Types of Privileges in this same topic below for more information about the settings on this page.
Administrative privileges are set for all admin group users linked to this same combination of admin class and user class.
It’s possible to map multiple admin classes to multiple user classes. You can use this feature to share or split administrative control of privileges for a selected user class.
If you don’t have a reason to restrict administrator control of this combination of admin class and user class, then leave everything turned ON.
Note: If you want to experiment, turn all four privilege checkboxes OFF for a given category of data object, such as Reports. In step 2, described below, you’ll discover an administrator using this mapping will not be able to set this same option when setting organization user privileges.
Click the Update Privileges button to save your changes.
Categories of Data Objects
Devices
Tests
Actions
Organization
Users
User Classes - Administrators cannot set options for the selected user class unless Read and Update privileges for this data object is enabled. See Types of Privileges below.
Limits
Containers
Reports
Maps
Config Mgmt
Cloud
Types of Privileges
Create/Delete - Allows the creation and deletion of the selected type of data object.
Read - Unchecking Read for a particular type of data object, such as Devices has the effect of hiding that type of data object entirely from the Traverse administrator’s view. This assumes a given data object is in a organization associated with the same admin class and user class.
Update - Allows the selected type of data object to be changed.
Suspend/Resume- Applies to processes associated with a selected type of data object. For example, an administrator can grant users the privilege of suspending and resuming device monitoring.