IoT Platform User Guide

Roles

Role-based access model for IoT Platform pages, actions, and account-level governance.

Role-based access in Optra IoT determines which pages, actions, and settings are available for the selected account. Access is assigned by role, and each role enables a specific set of capabilities for operations, configuration, and administration.

Role Definitions

Use the following role model when assigning access:

  1. Administrator - Full access to IoT across account governance, settings, operations, and configuration workflows.
  2. Manage Insights - Configure Insights content and structure (for example, create/edit dashboards and folders).
  3. Manage Data - Configure Data Accelerator capabilities and data-management workflows.
  4. Manage Devices - Send Cloud-to-Device messages and perform device-control actions.
  5. Manage Integrations - Configure integrations and secrets used for external system connectivity.
  6. Manage Users - Control who has access to IoT by managing account-level user membership and roles.
  7. Reader - Read access to IoT for viewing operational data without manage-level configuration privileges.

Manage Roles for Members

To edit member roles, do the following:

  1. Open Settings from the user menu.
  2. In the left sidebar, go to Account > Members.
  3. Find the target user in the members list.
  4. Click the member name (or row) to open the member details pane on the right.
  5. In Roles, select the checkboxes for the roles you want to assign.
  6. Clear role checkboxes you want to remove.
  7. Click Save to apply the role updates.
  8. To remove access completely, use the member remove action (trash icon) from Account > Members and confirm removal.
  9. Confirm the member now has the expected role set in the members view (or is removed, if you performed member removal).

Access Notes

To apply these roles effectively, do the following:

  1. Assign the minimum role set needed for each user's job function.
  2. Combine manage roles when users must work across Insights, Data, Devices, and Integrations.
  3. Reserve Administrator for governance and high-impact platform configuration.
  4. Use Reader for visibility-only users who should not modify configuration.