Topics included in this article:
- Overview
- Create a Role
- Role Assignment
- Permissions and the Access They Grant
- Cloning a Role
- Helpful Links
- Contact Support or Sales
Overview
Chances are, there are cameras, sensors, or access control devices within your organization that only specific people should be able to access. With permissions-based roles, you can control the level of visibility and access to devices within the Rhombus Console. This article covers the different settings associated with creating a role, the permissions they grant, and how to assign a role.
Create a Role
1. To set up a new role, log into the Rhombus Console, navigate to "Settings," and click "Manage Roles."
2. Next, select "Add Role" in the upper left corner, and a window will appear to create the role.
3. Enter the name for this role, and click "Next" in the bottom right corner.
4. The following screen allows you to select specific permissions for administrative actions to which the role will have access. When you are finished, click "Next" in the bottom right corner.
5. The final step of role creation is selecting which locations and which devices within those locations this role will have access to. To set permissions that apply to all locations within your organization, choose one of the "Live Only," "View Only," or "View & Manage" options at the top of the screen. To edit by location, choose one of those options beside the location you wish to edit.
Live Only
- The user can only view live footage for the selected devices.
Note: A user with "Live Only" permissions to a device cannot receive alert notifications for the device since push notifications contain historical footage.
View Only
- The user can only view footage from the selected devices.
View & Manage
- The user can view footage from the selected devices and manage their settings.
6. The "Default for new locations" setting will apply the same role permissions you create for this role to newly added locations in your organization.
7. Clicking the "Devices" dropdown will allow you to choose the individual devices at the specified location to which this role will have access.
8. After selecting access and device permissions, click "Next" in the bottom right corner.
Note: Any camera that a role is not permitted to access will not be visible when a user assigned that role logs into the console via the website or mobile app. Furthermore, that role will not be able to see any alerts or saved clips specific to that camera.
9. If you have Access Control devices at your organization, you will need to delineate which access control devices can be accessed by this role as well. Click "Create Role" when finished.
Create a User-Specific Role
| 1. To set up a User-Specific role, log into the Rhombus Console, navigate to "Settings," and click "Manage Users." |
|
|
| 2. Select the user. |
| 3. Click "User-Specific Role." |
|
|
| 4. At this point you can choose to copy the role permissions from an existing role to this user-specific role, or you can customize this role to your preferences. |
|
|
| 4a. Click "Copy Existing Role," select an existing role or user from the respective dropdown menus, and click "Done." |
|
|
| 4b. Click "Edit Role" to customize this role. Follow steps 3-9 in the Create a Role section once the pop-up window opens. |
Role Assignment
Once you have created your new role, you can apply it to any user by navigating to "Settings," "Manage Users," selecting the user, and clicking the drop-down menu on the left side of the screen.
When creating a new user, you will be required to assign a role to the user being created.
Note: Every organization has a "Super Admin" role by default, which cannot be removed. Users assigned this role are allowed to access everything within the account.
Permissions and the Access They Grant
Enabling permissions will grant roles with specific access and administrative actions within the Rhombus console. Below is a breakdown of each permission and what that permission allows a user to access.
| Permission | Type of Access Granted |
| Devices : View & Manage | Enabling this permission allows users to view devices in the console and modify their settings. |
| Devices : Register | Enabling these permissions allows users to register hardware to the console and reboot devices. |
| Devices : Delete | Enabling this permission allows users to delete a device by unregistering it. |
| Locations : View & Manage | Enabling this permission allows users to view existing locations, create new locations, and edit their associated details. |
| Account Settings : View & Manage | Enabling this permission allows users to view and modify account-level settings, such as the account name and account owner. |
| API Administration : View & Manage | Enabling this permission grants users access to API settings and allows them to create API keys for communicating with external applications. This permission also allows users to manage Apple TV settings, which use the API to communicate with Rhombus. |
| Audit Logs & Reports : View & Manage | Enabling this permission grants users access to account logs and reports. These logs and reports include audit histories of user actions within the console, device inventory, device bandwidth reports, and more. |
| Faces : View & Manage | Enabling this permission allows users to view and edit details of faces captured by the cameras' facial recognition software, including updating names, assigning labels, and marking detections as inaccurate. |
| Integration Settings : View & Manage | Enabling this permission grants users access to the Third Party Integrations tab, allowing them to create new integrations and modify existing ones. |
| License Plates : View & Manage | Enabling this permission allows users to view and edit details of license plates captured by the cameras' license plate recognition software, including updating names and assigning labels. |
| Licenses : View & Manage | Enabling this permission grants users access to the "Licenses" tab, allowing them to apply or remove Enterprise Licenses and features from devices. |
| Policies : Manage | Enabling this permission grants users access to the "Alert Policies" tab, allowing them to create, edit, and delete device alert policies. This permission also allows users to manage the Rules Engine, Cloud Archiving, audio files, and schedules. |
| Custom Events : View & Manage | Enabling this permission allows users to view and manage Custom Events. Custom Events enable users to define custom parameters for triggering alerts, creating seek points, and generating reports. |
| Users : View & Manage |
Enabling this permission allows users to view and manage other users with equal or lesser permissions. This includes adding and removing users, modifying user roles and notification settings, and more. Note: To edit another user's role, you must have access to at least the same functions, devices, and locations as that user. |
| Video : Share & Download |
Enabling this permission allows users to share video streams with people outside the Rhombus Console and download streams for viewing in external streaming applications. Note: Viewing a shared stream in the console requires at least "View Only" permission for the device from which the stream was shared. |
| Saved Video : View & Manage | Enabling this permission allows users to create video clips and manage existing saved clips. |
| Unlock Doors : Door Access Administration |
Enabling this permission allows users to unlock doors from the web console. Note: This permission does not affect the "Remote Unlock" setting in the Rhombus Key app. |
| Authentication Administration : Manage | Enabling this permission allows users to manage SSO settings, access control credentials, OAuth settings, and 2-factor authentication. |
| Firmware Administration : Manage | Enabling this permission grants users access to the "Firmware Updates" tab, allowing them to manually update device firmware or schedule firmware updates during specific hours. |
| Alarm Monitoring : View & Manage | Enabling this permission allows users to view and manage all Alarm Monitoring clips and settings. This includes managing emergency response contacts, first-responder entry instructions, and alert keypad PINs. |
| Alarm Monitoring : View Only | Enabling this permission allows users to view Alarm Monitoring details but does not allow them to modify Alarm Monitoring settings. |
| Guest Management : View & Manage | Enabling this permission allows users to view and manage Guest Management settings. |
| Guest Management : View Only | Enabling this permission allows users to view Guest Management information but does not allow them to modify Guest Management settings. |
Cloning a Role
Cloning a role allows you to create a secondary role that starts with the same base access but can be altered if you want to change the access slightly. Begin by navigating to "Settings" and clicking "Manage Roles." Once there, find the role you wish to clone, click the ellipsis button on the right hand side, and click "Clone." You must review the permissions and device access before saving the role.
Helpful Links
Contact Support or Sales
Have more questions? Contact Rhombus Support at +1 (877) 746-6797 option 2 or support@rhombus.com.
Interested in learning more? Contact Rhombus Sales at +1 (877) 746-6797 option 1 or sales@rhombus.com.
Comments
0 comments
Please sign in to leave a comment.