Creating a Custom Role at the Subscription Level
Applies to: Kyvos Enterprise Kyvos Cloud (SaaS on AWS) Kyvos AWS Marketplace
Kyvos Azure Marketplace  Kyvos GCP Marketplace Kyvos Single Node Installation (Kyvos SNI)
Note
If you are unable to add a role, contact your Azure Account Administrator to do so.
Creating a Custom RoleÂ
To create a custom role, perform the following steps.
Log in to the Azure portal.
Navigate to Subscription and click Access Control (IAM) on the navigation bar.Â
Click Add > Add custom role as shown below.
The Create a Custom Role wizard is displayed.ÂOn the Basics tab, enter a unique custom role name.
Click the JSON tab, and then click Edit.
Delete the existing JSON text.
Copy the text from the CustomRole_DeploymentUser.json file, which contains the required permissions, and paste it into the JSON textbox.
Replace the {Subscription_ID} with the respective Subscription Id.Â
Replace the value of roleName with the Custom role name value provided in Step 4.Â
Click Save. The JSON automatically assigns the required permissions.
Click on Review + Create. Then click Create. The custom role is created.Â
Assigning a Custom RoleÂ
After you create a custom role on Azure, you will need to attach the role to the user who will be deploying the Kyvos Application.Â
To assign a Custom Role, perform the following steps.Â
Go back to the Subscription page and click Access Control (IAM).Â
Click Add > Add role assignment.
On the Role Assignment pane, enter details as:Role: Search and select the custom role that you created earlier. See the Creating a Custom Role section for more details. Â
Assign Access To: Select the User, group, or service principal option.Â
Select: Select the User to which you want to add this role.Â
Click Next.
On the Review + assign tab, review the role assignment settings.
Click Review + assign to assign the role.
After a few moments, the Custom role is assigned to the user.  Â
Copyright Kyvos, Inc. All rights reserved.