RBAC Policies for IDP Portal / SSEM
M
Mantis Bobcat
Hi Team,
Hope you are doing well. My name is Anubhav, and I am part of the National Australia Bank (NAB) team.
We have recently started using the Internal Developer Portal (IDP), and I would like to raise a request regarding the current RBAC controls.
At the moment, the IDP portal provides access to Catalog, Blueprints, and Envs, with the following available roles:
i) View
ii) Create/Edit
iii) Delete
While the View and Delete roles work well for us, the combined Create/Edit role is a challenge from a governance and control perspective.
For stronger access control and clearer separation of responsibilities, we would like to request splitting the existing “Create/Edit” role into two distinct roles:
i) Create
ii) Edit
This separation will help us enforce better governance. Our intended model is:
Create → assigned only to Senior Engineers
Edit → assigned to the broader development team
Could you please review this request and let us know if this enhancement can be considered?
Thanks and regards,
Anubhav
Log In