Capability Groups

A capability is the ability to interact with a specific resource or feature. It can be defined as a collection of specified capabilities with applied actions. To control access to data and features, you can define what capabilities users or applications need to work with different roles. A capability is defined by a resource type, a scope, and actions. The resource type and scope define the data the capability applies to, while the action defines the operations you are allowed to perform.
For example:
3d:create
  : You can use this capability to create and upload 3D models.
timeseries:read
: This capability can be used to read a time series.
READ time series data
If you want users or applications to READ the time series data, but don’t want to WRITE. In this scenario, first, you need to create a capability group in DataMosaix and add the relevant users and applications to it. Then you need to choose the capability
timeseries
and select the action - READ.
To upload 3D Models
Upload and work with 3D models, 3D revisions, and 3D files.
3D Models
Capability type
Action
Scope
Description
3D
3d:read
Data sets, All
View 3D models.
3D
3d:create
Data sets, All
Upload 3D models to CDF.
3D
3d:update
Data sets, All
Update existing 3D models in CDF.
3D
3d:delete
Data sets, All
Delete 3D models.
When a new project is created, default capability groups are also generated as part of it. You cannot modify the capabilities, group name, or description of a Default capability group. But you can create a copy of it using the Duplicate Capability Group feature and modify it as per your preference or you can apply custom capabilities to it.
To find the list of Default Capability Groups and the capabilities and actions applied to it, refer to Default Capability Groups.
The
Capability Groups
tab displays the custom and default group names listed within the organization along with description, capabilities actions, when it was last updated, and group type (Default or Custom) information. Project Admin users can create groups based on capabilities from permitted actions and reuse them in customized roles.  To ensure your changes to capability groups take effect immediately, please log out and log back in.
NOTE: Default groups have pre-defined capabilities and these capabilities are not modifiable.
Prerequisites
  • You have the Project Administrator role assigned.
Capability Groups Listing
To view the Capability Groups Listing page, on the Management Console, navigate to the
Manage Access
tab and click the
Capability Groups
tab.
Provide Feedback
Have questions or feedback about this documentation? Please submit your feedback here.