Granting rights
Corporate App Catalog and Corporate App Catalog Management Console support the role-based access control (RBAC) roles, defined in Kaspersky Security Center. You can configure access rights to Corporate App Catalog features in the MMC-based Administration Console of Kaspersky Security Center. You can grant rights to users before or after installing the solution.
To perform actions in Corporate App Catalog, the users need to have the right specified next to the action listed in the table below.
Access rights to user actions in Corporate App Catalog
User action |
Users |
Rights |
---|---|---|
Downloading apps from Corporate App Catalog |
Company employees, company administrators |
Read |
Connecting new devices to Kaspersky Security Center via Corporate App Catalog |
Company employees, company administrators |
Read, Connect new devices |
Viewing the unlock code for device |
Company employees, company administrators |
Read, Send commands to mobile devices |
Adding new apps to the catalog via Corporate App Catalog Management Console |
Company administrators |
Read, Write |
To grant rights to a user or a user group:
The Security section is available if the Display security settings sections check box is selected in the interface settings window.
The set of rights for the user or group of users is now configured.
Authentication in Corporate App Catalog and Corporate App Catalog Management Console
Corporate App Catalog and Corporate App Catalog Management Console support the following authentication methods:
To use domain authentication, poll your users from the Active Directory. To use Corporate App Catalog functionality, an administrator must grant company employees the required access rights.
For more details on internal user accounts, please refer to Kaspersky Security Center Help. To use Corporate App Catalog functionality, an administrator must grant company employees the required access rights.
Corporate App Catalog uses the global list of Kaspersky Security Center users. The list is expanded automatically when importing users from Active Directory or manually.
Page top