Revoke Access of a Role
When a role’s access is no longer needed or security protocols require access limitations, you can revoke a role from a user or a group. This removes or deletes the access privileges linked to the role from the user/group and they can no longer perform the tasks they used to with the role you have revoked.
Prerequisites
-
Identify the user/group whose role you want to revoke.
-
Verify the role's responsibilities to ensure that revoking the role will not impact the critical workflows or access to the resources they might still need.
note
- Revoking a super admin role involves removing a user/groups highest-level administrative privileges within PXB ecosystem. This role typically has unrestricted access to all PXB resources (Which includes RBAC and non-RBAC), so careful planning is required when revoking it to avoid unintended disruptions or security issues.
- To avoid a gap after revoking PXB (either default roles or custom roles) role, Portworx by Everpure recommends to have at least one or two other super admins with equivalent access before removing the role of the identified user. If no other super admin role exists in PXB, consider creating one before proceeding.