2 Permissions

    Overview

    User types

    Permissions in Zabbix depend, primarily, on the user type:

    • User - has limited access rights to menu sections (see below) and no access to any resources by default. Any permissions to host or template groups must be explicitly assigned;
    • Super admin - has access to all menu sections. The user has a read-write access to all host and template groups. Permissions cannot be revoked by denying access to specific groups.

    Menu access

    The following table illustrates access to Zabbix menu sections per user type:

    User roles

    Furthermore, a user role determines access not only to menu sections, but also to services, modules, API methods and various actions in the frontend.

    are configured in the Users → User roles section by Super admin users.

    User roles are assigned to users in the user configuration form, Permissions tab, by Super admin users.

    Access to hosts

    Access to any host and template data in Zabbix is granted to on the host/template group level only.

    That means that an individual user cannot be directly granted access to a host (or host group). It can only be granted access to a host by being part of a user group that is granted access to the host group that contains the host.

    Similarly, a user can only be granted access to a template by being part of a user group that is granted access to the template group that contains the template.