Skip to main content

Manage access to metrics

Access to metrics is governed by a role-based access control model that defines access within an account and project. Read more in the instruction Access control in Selectel products.

member

A user with full access to all services. Does not have management access to: users, service users, user groups and federations.

Access scopes
  • account;
  • project
Who can be assigned
  • users;
  • service users;
  • user groups
Available metric operations

In the Account access scope:

  • collect metrics

In the Project access scope:

  • collect metrics

reader

User with access to view everything managed by member in the same access scope.

Access scopes
  • account;
  • project
Who can be assigned
  • users;
  • service users;
  • user groups
Available metric operations

In the Account access scope:

  • collect metrics

In the Project access scope:

  • collect metrics

iam.admin

A user with access to user management and no access to services or billing. Cannot manage their own account: change permissions, manage notifications, or delete the user. The first user with the iam.admin role is created by the Account Owner.

Access scopesAccount
Who can be assigned
  • users;
  • service users;
  • user groups
Available metric operations

iam.viewer

User with access to view everything managed by iam.admin.

Access scopesAccount
Can be assigned to
  • users;
  • service users;
  • user groups
Available operations with metrics

metrics.admin

A user with access to metrics management. Does not have access to other products.

Access scopes
  • account;
  • project
Can be assigned to
  • users;
  • service users;
  • user groups
Available operations with metrics

In the Account access scope:

  • collect metrics

In the Project access scope:

  • collect metrics