Is it possible to allow a user to only see a single section in Lacework?

  • 6 October 2023
  • 0 replies

Userlevel 2

Recently I was asked by a someone if they could lock down the Lacework UI because they wanted their finance department to only see the licensing used page, so they could match the subscription to vCPU and their license usage.  The answer is YES.  You have granular control over the visibility of what a particular user can potentially access within the platform.

  • The basic steps are, create a role that has only “read access to whatever you want them to access. (Login to lacework
    1. Login to Lacework
    2. Click on the settings menu at the bottom left
    3. In the “Access Control” section, click on “Roles”
    4. Click on “+Add New” 
    5. Type in the Name of your choice
    6. Select the Pages and level of access required for the role
    7. Click Create
  • Create a user group and put that “role” in that group
    1. Navigate to Settings → User Groups in the “Access Control” Menu group
    2. Click on “+Add New” 
    3. Type in the Name of your choice
    4. Select the role from the dropdown menu
    5. Click the Next Button
    6. Select the users to be assigned to the new User group (place checkbox next to their user name - if the user does not exist, you can make no selection and just click the save button).
    7. Click the Save button
  • Create or edit the user details so that they are associated with that user group with the limited role permissions.
    1. ​​​​​​​Navigate to Settings → Users menu at the bottom left
    2. Click the “+Add New” or select the three dot menu next to the user and Select Edit then go to step 5
    3. Type in User name, company, and email
    4. Choose the user type (in this case standard user)
    5. Select the user group to be added
    6. Click save




Using Lacework/Operationalizing



0 replies

Be the first to reply!