Skip to content

PermissionsGroup

PermissionsGroup represents the collection of various permission groups that exist across all features. However, not all permission groups are applicable to every feature. PermissionsGroup serves as a superset encompassing all available permission groups. The specific context of permissions within a group depends on the feature to which it is onboarded.

Values

Value Description
AKS_CUSTOM_PRIVATE_DNS_ZONE Represents the permissions required to use custom private DNS zones for private AKS clusters.
AUTOMATED_NETWORKING_SETUP Represents the permissions required to setup networking for exocompute.
BACKUP_V2 Represents the set of permissions required for immutable backup V2 operations. These permissions are applicable to the cloud native SQL DB and SQL MI features.
BASIC Represents the basic set of permissions required to onboard a feature. These permissions are applicable to all the features.
CLOUDSQL Represents the set of permissions required for CloudSQL operations. These permissions are applicable to the GCP Exocompute feature.
CLOUD_CLUSTER_ES Represents the set of permissions required for Cloud Cluster ES operation. These permissions are applicable to the cloud native protection feature.
CUSTOMER_HOSTED_LOGGING Represents the permissions required to enable customer hosted logging. These permissions apply only to the Azure Exocompute feature.
CUSTOMER_MANAGED_BASIC Represents the permissions required to enable customer-managed Exocompute feature. These permissions apply only to the Azure Exocompute feature.
CUSTOMER_MANAGED_STORAGE_INDEXING Represents the permissions required to store and retrieve index files from customer hosted storage account. These permissions apply only for Azure cloud type.
DATA_CENTER_CONSOLIDATION Represents the set of permissions required to enabled the Consolidation feature for data center archival location. These permission are applicable to the Data Center Role-based archival feature.
DATA_CENTER_IMMUTABILITY Represents the set of permission required to enable the Immutability feature for data center archival location. These permission are applicable to the Data Center Role-based archival feature.
DATA_CENTER_KMS Represents the set of permissions required to use AWS KMS feature for data center archival location. These permission are applicable to the Data Center Role-based archival feature.
DOWNLOAD_FILE Represents the set of permissions required for file level recovery for AWS EC2/EBS. These permissions are applicable to the cloud native protection feature.
ENCRYPTION Represents the set of permissions required for encryption operation. These permissions are applicable to the cloud native archival encryption feature.
EXPORT_AND_RESTORE Represents the set of permissions required for export and restore operations. These permissions are applicable to the cloud native protection feature.
EXPORT_AND_RESTORE_POWER_OFF_VM Represents the set of permissions required for export and restore power off operations. These permissions are applicable to the cloud native protection feature.
EXPORT_POWER_OFF Represents the set of permissions required for export operations specifically in the powered-off state for AWS EC2/EBS. These permissions are applicable to the cloud native protection feature.
EXPORT_POWER_ON Represents the set of permissions required for export operations for AWS EC2/EBS. These permissions are applicable to the cloud native protection feature.
FILE_LEVEL_RECOVERY Represents the set of permissions required for file-level recovery operation. These permissions are applicable to the cloud native protection feature.
GROUP_UNSPECIFIED Unspecified permission group.
NAT_GATEWAY Represents the set of permissions required for NAT gateway operations. These permissions are applicable to the Laminar Outpost Application feature.
PRIVATE_ENDPOINTS Represents the set of permissions required for usage of private endpoints. These permissions are applicable to exocompute feature.
RECOVERY Represents the set of permissions required for all recovery operations. These permissions are applicable to the following features: - SQL DB - SQL MI features - Azure Devops Repository.
RESTORE Represents the set of permissions required for restore operations for AWS EC2/EBS. These permissions are applicable to the cloud native protection feature.
RSC_MANAGED_CLUSTER Represents the set of permissions required for the Rubrik-managed Exocompute cluster. Currently, these permissions apply only to the AWS Exocompute feature.
SAP_HANA_SS_BASIC Represents the required permissions for the basic operation of SAP HANA SS. These permissions are applicable to the cloud cluster ES feature.
SAP_HANA_SS_RECOVERY Represents the required permissions for the recovery operation of SAP HANA SS. These permissions are applicable to the cloud cluster ES feature.
SERVICE_ENDPOINT_AUTOMATION Represents the permissions for service endpoint automation.
SNAPSHOT_PRIVATE_ACCESS Represents the set of permissions required for private access to disk snapshots. These permissions are applicable to the cloud native protection feature.
SQL_ARCHIVAL Represents the permissions required to enable Azure AD authorization to store Azure SQL and MI snapshots in an archival location using Colossus. These permissions apply to Cloud Native Archival Feature.