Policy manager
Privileges for the 'Cross-environment' role level
Access to all functions relevant for Policy Management.
Read and write privileges for the imported policy templates.
Create and edit policy templates manually.
Generate, deactivate, and reactivate policy roll-outs.
Check policy roll-outs, policy roll-out approvals, and policy roll-out confirmations.
Update policy roll-outs and policy roll-out confirmations.
Edit policy review schedulers.
Create and edit policy exceptions.
Check and generate policy reviews.
Deactivate, reactivate, and extend policy reviews.
Read privilege for policy roll-out approvals and policy roll-out confirmations.
Read privilege for all policy evaluations.
Privileges for the 'Environment-specific' role level
Edit the imported policy templates of the assigned environment
Manually create and edit policy templates for the assigned environment
Generate, deactivate, and reactivate policy roll-outs of the assigned environment
Create policy exceptions, assign and remove policy exceptions
Check and generate policy reviews
Deactivate, reactivate, and extend policy reviews
Read privilege for policy roll-outs, policy roll-out approvals, policy roll-out confirmations, and policy exceptions of the assigned environment
Read privilege for policy evaluations of the assigned environment
For procedures and background information, refer to Policy Management or to the modeling conventions.