# Profile rights

> The five rights that can be set on a security profile from the System Administration plug-in.

Source: https://docs.capaone.com/capainstaller/the-capainstaller-console/system-administration/what-is-system-administration/security/profile-rights/  
Product: CapaInstaller — a separate CapaSystems product; do not apply this page to any other.

# Introduction

These tables describe the rights that can be set from the System Administration Plugin.  
    
 Whenever a Profile is created there are 5 rights that can be set. These rights are the top-level rights that control access to each plugin.  
    
 When a Configuration Management Point is linked to a Profile a new set of rights are created. These rights must be set for each linked Configuration Management Point.

### **Rights for a Security profile**

|                              |             |           |            |
|:-----------------------------|:------------|:----------|:-----------|
|                              | **Manager** | **Admin** | **Viewer** |
| **Asset Manager**            |             |           |            |
| Full control                 |             | x         |            |
| Viewer                       | x           |           |            |
| **Business Unit Manager**    |             |           |            |
| Full Control                 |             | x         |            |
| Viewer                       | x           |           |            |
| **OS Deployment Manager**    |             |           |            |
| Full control                 |             | x         |            |
| Viewer                       | x           |           |            |
| **Patch Manager**            |             |           |            |
| Full control                 |             | x         |            |
| Viewer                       | x           |           |            |
| **Report and Query Manager** |             |           |            |
| Full control                 |             | x         |            |
| Viewer                       | x           |           |            |
| **System Manager**           |             |           |            |
| Full control                 |             | x         |            |
| Viewer                       | x           |           |            |
| **Management Portal**        |             |           |            |
| Full control                 |             |           |            |
| Viewer                       |             |           |            |
| **Self Service Portal**      |             |           |            |
| Full control                 |             |           |            |
| Viewer                       |             |           |            |

### **Rights for a Configuration Management Point**

|                                     |             |           |            |
|:------------------------------------|:------------|:----------|:-----------|
| **Management Point administration** | **Manager** | **Admin** | **Viewer** |
| Deactivate printer                  |             | x         |            |
| Remove the printer from the system  |             | x         |            |
| Import printer                      |             | x         |            |
| Promote (to parent AND child point) |             | x         |            |
| Delete folder                       | x           |           |            |
| Rename folder                       | x           |           |            |
| Move package from/to folder         | x           |           |            |
| Create a new folder                 | x           |           |            |

|                               |               |           |            |
|:------------------------------|:--------------|:----------|:-----------|
| **Enrollment roles**          | **No Access** | **Admin** | **Viewer** |
| Enroll Device and Assign User |               | x         |            |
| Enroll Prestaged Device       |               | x         |            |
| Enroll Unknown Device         |               | x         |            |

|                                                    |             |           |            |
|:---------------------------------------------------|:------------|:----------|:-----------|
| **Unit Administration**                            | **Manager** | **Admin** | **Viewer** |
| Create unit                                        |             | x         |            |
| Delete unit                                        |             | x         |            |
| Cancel reinstallation of the unit                  | x           |           |            |
| Reinstall unit                                     | x           |           |            |
| Update reinstall settings for a unit               | x           |           |            |
| Change the schedule of a reinstallation for a unit | x           |           |            |
| Restart agent                                      | x           |           |            |
| Unit WakeOnLan                                     | x           |           |            |
| Unlink the unit from the printer                   | x           |           |            |
| Link printer to unit                               | x           |           |            |
| Change unit properties                             | x           |           |            |
| Change status on a package (on a unit)             | x           |           |            |
| Unlink a package from a unit                       | x           |           |            |

|                                              |             |           |            |
|:---------------------------------------------|:------------|:----------|:-----------|
| **Package Administration**                   | **Manager** | **Admin** | **Viewer** |
| Promote Packages (to parent AND child point) |             | x         |            |
| Delete package                               |             | x         |            |
| Import package                               |             | x         |            |
| Edit package properties                      |             | x         |            |
| Link package to the server                   |             | x         |            |
| Link units to package                        | x           |           |            |
| Link packages to unit                        | x           |           |            |
| Unlink package from the server               |             | x         |            |
| Edit install Script                          |             | x         |            |
| Export package                               |             | x         |            |
| Schedule package                             |             | x         |            |
| Remove package from the catalog              |             | x         |            |

|                                       |             |           |            |
|:--------------------------------------|:------------|:----------|:-----------|
| **Group Administration**              | **Manager** | **Admin** | **Viewer** |
| Link printer to group                 |             | x         |            |
| Unlink printer from group             |             | x         |            |
| Link package to a group               |             | x         |            |
| Unlink package from a group           |             | x         |            |
| Create a new group                    |             | x         |            |
| Delete group                          |             | x         |            |
| Unlink unit from group                | x           |           |            |
| Link unit to a group                  | x           |           |            |
| Enable schedule for a group           | x           |           |            |
| Disable schedule for a group          |             | x         |            |
| Change default printer on group       |             | x         |            |
| Change group properties               |             | x         |            |
| Create a Power scheme group           |             | x         |            |
| Delete Power scheme group             |             | x         |            |
| Edit Power scheme group               | x           |           |            |
| Create a Power scheme                 |             | x         |            |
| Delete Power scheme                   |             | x         |            |
| Promote Power scheme                  |             | x         |            |
| Add/remove Power scheme to/from group |             | x         |            |
