permissions.ini


# whitespace separated list of usernames who have admin permissions
admin-user[] = 

# whitespace separated list of user group names who have admin permissions
admin-group[] =

# whitespace separated list of usernames who cannot log in
disable-user[] =

# whitespace separated list of user group names who cannot log in
disable-group[] =

# enable manager permissions. managers can interact on the resources of other users
manager-enable = false

# whitespace separated list of usernames who have manager permissions
manager-user[] =

# whitespace separated list of user group names who have manager permissions
manager-group[] = 

# whitespace separated list of usernames who have full user permissions (ignore limited user permissions)
full-user-user[] =

# whitespace separated list of user group names who have full user permissions (ignore limited user permissions)
full-user-group[] = 



# enable limited users. limited users have restricted permissions on their own resources. full users have full permissions on their own resources
limited-user-enable = false

# not used. for backwards compatibility only
limited-user-group[] =

# not used. for backwards compatibility only
limited-user-user[] =

# specific actions a manager can perform on a different user's session 
[manager-permissions.session]
# view session info
info = true
# connect to a running session 
connect = true
# disconnect a session
disconnect = true
# edit custom parameters
params = true
# exec a command on a running session
exec = true
# view session logs
log = true
# purge a session from the database
purge = true
# connect to a shortcut session 
shortcut = true
# terminate a sessin 
terminate = true

# specific actions a manager can perform on a different user's info
[manager-permissions.user]
# view/edit a user's profile
profile = true
# [deprecated] view/edit a user's ssh keys
ssh-keys = true
# view/edit a user's logins
logins = true

# actions a manager can perform on servers
[manager-permissions.server]
# [deprecated] view server info
info = true


# actions limited users can perform to start sessions
[limited-user-permissions.start]
# start a session from an application
bookmark = true
# start a custom session 
custom = true

# actions limited users can perform on applications
[limited-user-permissions.bookmark]
# view ystem level applications
system = true
# view/edit user applications
user = true
# view/edit user history
history = true
# view/edit user favorites
favorites = true

# actions a limited user can perform on his own sessions
[limited-user-permissions.session]
# view info
info = true
# connect to a session
connect = true
# share a session
share = true
# disconnect a session
disconnect = true
# connect to a shortcut
shortcut = true
# edit custom parameters
params = true
# execute a command on a session 
exec = true
# view session logs
log = true
# purge the session from the database
purge = true
# terminate the session 
terminate = true

# actions a user can perform on his own profile
[limited-user-permissions.user]
# view/edit profile
profile = true
# [deprecated] view/edit ssh keys
ssh-keys = true
# view/edit logins
logins = true

# actions a user can permform on utils
[limited-user-permissions.utils]
# download files from the file manager
file-download = true
# upload files using the file manager
file-upload = true
# [deprecated] access the terminal
terminal = true