Assign and manage a user's Access Policy

Assign and manage a user's Access Policy from Admin > User Management > Users to control which Cloud data they can access.

You can assign only one Access Policy to each user.

Note: Admin and Cost Model Manager users do not require an Access Policy and retain unrestricted access to Cloud data.


Before you begin

Ensure the required Access Policy has already been created and provides the Cloud data access the user needs.

Note: Access Policies work alongside existing role, account, cost center, and entity restrictions.


Assign an Access Policy

  1. Go to Admin > User Management > Users.

  2. Locate the user you want to manage.

  3. In the Actions column, click the Edit icon.

  4. On the Edit User dialog, select the required policy from Access Policy.

  5. Click SAVE.

The policy takes effect immediately. The user can access only Cloud data permitted by the policy and any other access controls that apply to the user.


Change an Access Policy

Because only one Access Policy can be assigned to a user, selecting a different policy replaces the user's current Access Policy.

To change the policy:

  1. Go to Admin > User Management > Users.

  2. Locate the user and click the Edit icon in the Actions column.

  3. On the Edit User dialog, select a different policy from Access Policy.

  4. Click SAVE.

The new policy takes effect immediately.


Remove an Access Policy

Take care when removing a policy from a user whose role requires an Access Policy.

  1. Go to Admin > User Management > Users.

  2. Locate the user and click the Edit icon in the Actions column.

  3. On the Edit User dialog, remove the current selection from Access Policy.

  4. Click SAVE.

If you remove a required user's Access Policy without assigning another policy, the user loses access to Yarken after the page reloads. Yarken displays No access policy assigned until an administrator assigns another policy. Yarken does not automatically restore the default Full Access Policy. Admin and Cost Model Manager users are exempt from this requirement.

To restore access:

  1. Go to Admin > User Management > Users.

  2. Locate the affected user and click the Edit icon in the Actions column.

  3. On the Edit User dialog, select an appropriate policy from Access Policy.

  4. Click SAVE.

The user can access Yarken again according to the newly assigned policy.


Existing users

For existing users in roles that require Access Policies, Yarken initially assigns the default Full Access Policy. This preserves unrestricted Cloud data access.

The Full Access Policy cannot be edited or deleted.

Assign an appropriate custom Access Policy when you need to restrict the user's Cloud data access.

If the Full Access Policy is replaced or removed, Yarken does not automatically restore it. If the user is left without a required Access Policy, Yarken displays No access policy assigned, and the user cannot access Yarken until an administrator assigns a policy.


Related content