By: Simon Devlin user 26 Jul 2016 at 3:29 p.m. CDT

3 Responses
Simon Devlin gravatar
Hi everyone In a scenario where I'm using the embedded OpenDJ as the only directory (users are created and managed manually - no SCIM or other automated user provisioning), is it possible to implement some form of role based access to the Gluu GUI? I'd like to setup an account for our helpdesk to deal with basic user admin tasks such as user creation or group assignments, but prevent them from, for example, deleting entire user groups, or changing trust relationships? Longer term, scripted user creation either direct to the OpenDJ or via SCIM is planned, but basic management in the day 0 requirement. Many thanks

By Aliaksandr Samuseu staff 26 Jul 2016 at 3:43 p.m. CDT

Aliaksandr Samuseu gravatar
Hi, Simon. This question has been asked before. Please check this ticket: [link1](https://support.gluu.org/customization/new-user-type-2820)

By Simon Devlin user 26 Jul 2016 at 3:50 p.m. CDT

Simon Devlin gravatar
Thank you. I can only view one of the tickets but get the idea. Isn't a huge issue as it can be worked around. Thank you once again for the speedy responses.

By Aliaksandr Samuseu staff 26 Jul 2016 at 4:03 p.m. CDT

Aliaksandr Samuseu gravatar
Yes, sorry for that, last one was a private ticket. But general idea is the same - it's sort of hardcoded into oxTrust and there is no easy way to change it. You can try on your own risk.