You can assign any of the following capabilities when you create roles.
Data Management
Capability |
Description |
Manage connections |
Manage the connections that allow you to send alerts to other tools. |
Manage Collectors |
Install and manage installed and hosted Collectors and Sources. Manage permission automatically includes view permission. |
Manage Ingest Budgets |
Manage ingest budgets. Enabling this will automatically enable the Manage Collectors capability. The Manage Collectors capability on its own permits the re-assignment of budgets to different Collectors, but not creating or deleting them. |
Manage data volume feed |
Enable and manage the data volume index for your account to avoid using On-Demand Capacity, and to determine when you need to upgrade your account. |
View Collectors |
View and Collectors and Sources that have already been installed or added. |
View fields |
View fields, which are custom metadata fields you can assign to logs. |
Manage fields |
Manage fields, which are custom metadata fields you can assign to logs.
Note that if you grant a role the Manage Fields capability, users with that role will also have the View Fields and View field extraction rules capabilities. |
View field extraction rules |
View field extraction rules, which speed the search process by automatically parsing fields as log messages are ingested. |
Manage field extraction rules |
Manage field extractions, which speed the search process by automatically parsing fields as log messages are ingested.
Note that if you grant a role the Manage field extraction rules capability, users with that role will also have the Manage Fields, View Fields, and View field extraction rules capabilities. |
View Partitions |
View Partitions. |
Manage Partitions |
View, create, edit, and delete Partitions.
Note that if you grant a role the Manage Partitions capability, users with that role will also have View Partitions and Manage S3 data forwarding capabilities. |
View Scheduled Views |
View Scheduled Views. |
Manage Scheduled Views |
View, create, edit, and delete Scheduled Views. Note that if you grant a role the Manage Schedule View capability, users with that role will also have View Scheduled View capabilities. |
Manage S3 data forwarding |
Manage S3 data forwarding from Sumo Logic to an S3 bucket. |
Manage Content |
Manage the content for your organization. This provides access to Admin Mode in the Library. |
Manage Tokens |
Manage Installation Tokens. |
View Account Overview |
View the Account Overview page. |
Dashboards
Capability |
Description |
Share dashboards with the allowlist |
Share dashboards in view-only mode with no login required. Viewers must be connecting from IP addresses specified in your service allowlist. |
Share dashboards with the world |
Share dashboards in view-only mode with no login required. Anyone with the URL can view the dashboard without logging in. |
User Management
Capability |
Description |
Manage users and roles |
Access the web app pages to manage users and roles. |
Cloud SIEM Enterprise
Capability |
Description |
View Cloud SIEM Enterprise |
Users with a role that grants this capability will see a "Cloud SIEM Enterprise" link in the left-nav bar of the Sumo Logic UI. When a user clicks on the link, the CSE Heads-Up Display (HUD) will open. |
Monitors (New)
Capability |
Description |
View Monitors (New) |
View Monitors. |
Manage Monitors (New) |
Create, edit, share, and delete Monitors. |