Permission and roles
ERP Connectivity creates following permissions and roles during startup.
| All users who need access to ERP Connectivity must have the role ERP Connectivity User assigned. If the roles and resources are no longer needed (e.g., if the functionality has changed and the resources and roles are no longer used), then these roles and resources must be deleted manually. |
Default roles
| Role | Permissions | Comment |
|---|---|---|
ERP Connectivity role for S2S communication |
health:execute urn.com.bosch.nexeed.connectorpackage.execution:read urn.com.bosch.nexeed.connectorpackage.execution:execute urn.com.bosch.nexeed.orchestratorpackage.execution:read urn.com.bosch.nexeed.orchestratorpackage.execution:execute urn.com.bosch.nexeed.package.execution:read urn.com.bosch.nexeed.package.execution:execute |
Privileges to execute Connector Packages and Orchestrator Packages and retrieve execution results for other modules |
ERP Connectivity User |
urn.com.bosch.nexeed.view.configuration:read urn.com.bosch.nexeed.view.monitoring:read |
Read privileges to ERP Connectivity configuration and Message and Orchestrator Log |
ERP Connectivity Power User |
urn.com.bosch.nexeed.connectorpackage.retry:execute urn.com.bosch.nexeed.connectorpackage.configuration:add urn.com.bosch.nexeed.connectorpackage.configuration:modify urn.com.bosch.nexeed.connectorpackage.configuration:delete urn.com.bosch.nexeed.connectorpackage.tags:add urn.com.bosch.nexeed.connectorpackage.tags:delete urn.com.bosch.nexeed.orchestratorpackage.configuration:add urn.com.bosch.nexeed.orchestratorpackage.configuration:modify urn.com.bosch.nexeed.orchestratorpackage.configuration:delete urn.com.bosch.nexeed.orchestratorpackage.retry:execute urn.com.bosch.nexeed.matrixconverter.configuration:modify urn.com.bosch.nexeed.matrixconverter.configuration:delete urn.com.bosch.nexeed.view.configuration:read urn.com.bosch.nexeed.view.monitoring:read urn.com.bosch.nexeed.orchestratorpackage.activities:read |
Privileges to view and modify ERP Connectivity configuration, manage Package installation and trigger manual retry of Connector Package execution |
ERP Connectivity Guest |
urn.com.bosch.nexeed.view.monitoring:read |
Read privileges to ERP Connectivity Message Log |
ERP Connectivity Editor |
urn.com.bosch.nexeed.connectorpackage.retry:execute urn.com.bosch.nexeed.connectorpackage.configuration:modify urn.com.bosch.nexeed.connectorpackage.tags:add urn.com.bosch.nexeed.connectorpackage.tags:delete urn.com.bosch.nexeed.orchestratorpackage.configuration:modify urn.com.bosch.nexeed.orchestratorpackage.retry:execute urn.com.bosch.nexeed.matrixconverter.configuration:modify urn.com.bosch.nexeed.matrixconverter.configuration:delete urn.com.bosch.nexeed.view.configuration:read urn.com.bosch.nexeed.view.monitoring:read |
Privileges to view and modify configuration |
ERP Connectivity Connector Package Creator |
urn.com.bosch.nexeed.connectorpackage.configuration:add urn.com.bosch.nexeed.connectorpackage.configuration:modify urn.com.bosch.nexeed.connectorpackage.configuration:delete urn.com.bosch.nexeed.connectorpackage.creation:execute urn.com.bosch.nexeed.view.configuration:read urn.com.bosch.nexeed.view.monitoring:read |
Contains all required resources to create, and manage Connector Packages |
ERP Connectivity role for diagnostics |
urn.com.bosch.nexeed.erpconn.diag:read urn.com.bosch.nexeed.erpconn.diag:modify urn.com.bosch.nexeed.erpconn.diag:execute |
Diagnostics role (only usable by BCI Tenant) |
Available resources and permissions
| Resource | Permissions | Description |
|---|---|---|
health |
execute |
Get service status via information |
urn.com.bosch.nexeed.erpconn.diag |
read, modify, execute |
Provides information about application state |
urn.com.bosch.nexeed.connectorpackage.execution |
read, execute |
Execute Connector Packages via the API and retrieve results |
urn.com.bosch.nexeed.connectorpackage.retry |
execute |
Trigger manual retry of Connector Package executions |
urn.com.bosch.nexeed.connectorpackage.configuration |
add, modify, delete |
Manage Connector Package configuration, installation and activation |
urn.com.bosch.nexeed.connectorpackage.tags |
add, delete |
Create or delete custom tags on Connector Packages |
urn.com.bosch.nexeed.connectorpackage.creation |
execute |
Create new Connector Package with Connector Package creation wizard |
urn.com.bosch.nexeed.orchestratorpackage.execution |
read, execute |
Execute Orchestrator Packages via the API and retrieve results |
urn.com.bosch.nexeed.orchestratorpackage.configuration |
add, modify, delete |
Manage Orchestrator Package configuration, installation and activation |
urn.com.bosch.nexeed.orchestratorpackage.tags |
add, delete |
Create or delete custom tags on Orchestrator Packages |
urn.com.bosch.nexeed.orchestratorpackage.retry |
execute |
Trigger manual retry of Orchestrator Package executions |
urn.com.bosch.nexeed.package.execution |
read, execute |
Execute Packages via v2 API and retrieve results |
urn.com.bosch.nexeed.matrixconverter.configuration |
modify, delete |
Manage converter mapping rules |
urn.com.bosch.nexeed.erpconn.export |
execute |
Export Connector and Orchestrator Packages including configuration |
urn.com.bosch.nexeed.view.configuration |
read |
See the configuration menu item in the portal which includes Connector and Orchestrator Package configuration and value converter configuration |
urn.com.bosch.nexeed.view.monitoring |
read |
See the monitoring menu item in the portal which includes Connector and Orchestrator Package logs |
urn.com.bosch.nexeed.orchestratorpackage.activities |
read |
Get Available Orchestrator Activies List |