This topic only applies to Armor Complete - Secure Hosting account administrators who have not started the upgrade process to Generation 4.
Before you begin, to better understand the upgrade process, Armor recommends that you review the Frequently Asked Questions for Generation 4 documentation.
24 hours before your scheduled upgrade begins, you will receive an invitation from Armor to complete the account signup process and access the Armor Management Portal (AMP).
Before Armor begins the upgrade process, use this document to complete the recommended pre-upgrade tasks.
Armor recommends that you complete these tasks so that after the upgrade process, you and your users can easily access AMP.
Step 1: Complete your account signup
Step 2: Confirmed assigned roles
In the Armor Management Portal (AMP), roles are similar to job titles that you can create and assign to your users. You can populate these roles with specific permissions to restrict the type of access your users can have in AMP.
For example, if you have a user who simply needs accounting permissions in AMP, you can create an Accounting role, assign accounting-related permissions to the role, and then assign that role to a specific user.
To prepare for the upgrade process, Armor has created three default roles (Admin, Technical, and Billing). Additionally, Armor has assigned your users to one of these roles.
Armor recommends that you review the assigned roles in AMP.
After the upgrade process, you can edit these roles.
By default, the Admin role contains every permissions and is automatically assigned to a new administrator account.
By default the Billing role contains the following permissions:
Read Entity Metadata
|View notes and tags|
|Read Identity||View account information|
|Read Workloads||View account workloads|
|Read Payment Information||View payment information|
Write Payment Information
|Update payment information|
|Read Compliance||View vulnerability scanning product information|
|Read AVAM||View Malware Protection detail|
|Read Dashboard Statistics||View the data that populates the security dashboard|
|Read FIM||View File Integrity Monitoring details.|
|Read Firewall||View account firewall rules|
|Update Personal Identity||Update the challenge phrase and challenge response|
|View Invoices||View the invoices associated with your account|
|Read Network IP||View account IP allocations and assignments|
|Read Network L2L||View L2L network tunnels|
|View Core License||View core license information for your account|
|Read Locations||View locations available for this account|
|Read LogManagement||View Log Management information|
|Read LogSearch||View Log Search information|
|Read Monitoring||View account resources|
|Read Network Nat||View DNAT assignments per VM.|
|Read Network Bandwidth||View network transfer history|
|Write Entity Metadata||Updates notes and tags|
|Read Notifications||View account notifications|
|Read Orders||View account resources|
|Read OS Packages||View OS patching details|
|Read Product Catalog||Read Product Catalog|
|Global Search||Perform Global Search|
|Read SSL VPN Devices and Users||View SSL VPN account users and details|
|Read Virtual Machine Stats||View graph data for virtual machines|
|Read Storage||View disk and storage information for the account|
|View Subscriptions||View subscriptions for your account|
|Read Tasks||View task information|
|Read Templates||View template details|
|Read Tickets||View open tickets in your account|
|Write Tickets||Create a support ticket|
|Read Virtual Data Centers||View account virtual data center details.|
|Read Server Replication|
|Read Virtual Machines||View virtual machine details|
|View Vulnerability Scans||View vulnerability scanning report details|
By default the Technical role contains the following permissions:
- Read Entity Metadata
- Read Identity
- Read Workloads
- Write Workload
- Read Compliance
- Write Compliance
- Read AVAM
- Read Dashboard Statistics
- Read FIM
- Read Connections
- Write Connectors
- Read Firewall
- Write Firewall
- Update Personal Identity
- Read Network IP
- Write Network IP
- Read Network L2L
- Write Network L2L
- View Core License
- Read Locations
- Read LogManagement
- Read LogSearch
- Write LogManagement
- Read Monitoring
- Read Network Nat
- Write Network Nat
- Read Network Bandwidth
- Write Entity Metadata
- Read Notifications
- Read Orders
- Write Orders
- Read OS Packages
- Read Product Catalog
- Global Search
- Write Secret
- Read Endpoints
- Read SSL VPN Devices and Users
- Read Virtual Machine Stats
- Read Storage
- View Subscriptions
- Write Subscriptions
- Read Tasks
- Write Tasks
- Read Templates
- Write Templates
- Read Tickets
- Write Tickets
- Read Virtual Data Centers
- Read Server Replication
- Read Virtual Machines
- Scale Virtual Machine
- Write Server Replication
- Write Virtual Machine
- View Vulnerability Scan
- In the Armor Management Portal (AMP), in the left-side navigation, click Account.
- Click Roles + Permissions.
- Click Admin.
- Click Members.
- Review and confirm the list of assigned users.
- (Optional) To remove a user from this role, click Edit Members.
- Under Chosen, select and drag the desired user to the Members column.
- Click the X at the top, right corner to save your changes.
- Repeat the above steps for the Billing and Technical roles.