UiPath Documentation
ixp
latest
false
IXP 概述指南
  • 简介
    • UiPath™ IXP 简介
      • 功能类型
      • 选择正确的功能
  • 访问控制和管理
  • 许可
  • 常见问题
重要 :
新发布内容的本地化可能需要 1-2 周的时间才能完成。

管理访问权限

管理 Automation Cloud 上的 IXP 服务中的访问权限,包括可用角色、权限以及如何将其分配给用户和组。

本节适用于 Automation Cloud 用户,介绍了如何在 IXP 服务中管理访问权限。

角色及其基本权限

本节概述了 UiPath™ IXP 服务中的不同角色及其授予的基本权限。

管理页面的管理访问权限选项卡中,您可以将角色分配给特定用户。每个角色都附带一组预定义权限,因此权限无法单独分配。相反,您必须分配拥有所有相关权限的主要角色。

备注:

所有用户都可以查看项目和租户中的其他用户,但只有管理员才能修改用户。

The following table contains a list of all roles and permissions, as well as a description of each role. The Applies to column indicates whether the role is functional in Communications Mining (CM) projects, Unstructured and Complex Documents (UCD) projects, or both:

角色范围Applies to权限角色说明
IXP 服务管理员租户CM and UCD审核日志 - 读取
租户 - 管理
授予 IXP 服务的所有权限。
IXP 项目管理员项目CM and UCD警示 - 写入
设备配置 - 写入
存储桶 - 追加
存储桶 - 写入
评论 - 管理
数据集 - 导出
数据集 - 管理
集成 - 写入
来源 - 管理
数据流 - 消耗
数据流 - 管理
您可以管理项目中的所有内容,例如用户、集成、数据源、数据集、模型、数据流和警示。您无法创建或删除项目。
智能提取处理 (IXP) 审核日志查看器租户CM and UCD审核日志 - 读取您可以通过审核 API 查看租户的审核日志。
IXP Package Admin (预览版)租户UCD包 - 读取
包 - 写入
包 - 删除
您可以在租户中创建、修改和删除包。
IXP Package Publisher (预览版)租户UCD包 - 读取
包 - 写入
您可以在租户中查看、创建和修改包。您无法删除包。
IXP 包阅读器(预览版)租户UCD包 - 读取您可以在租户中查看包。
IXP 分析师项目CM警示 - 写入
仪表板 - 写入
数据集 - 读取
集成 - 读取
来源 - 读取
数据流 - 读取
您可以查看项目中的所有内容,而且可以创建、更新和删除仪表板与警示。 您无法导入或导出数据,也无法审核数据并为其添加标签。您也无法修改或使用流,也无法设置集成。
智能提取处理 (IXP) Automation User项目CM and UCD评论 - 管理
数据集 - 读取
项目 - 执行
来源 - 读取
数据流 - 消耗
数据流 - 读取
您可以在此项目中上传数据并使用 Communications Mining 数据集的预测。此角色还允许智能体使用非结构化和复杂文档项目的运行时预测。
IXP 开发者项目CM and UCD警示 - 读取
设备配置 - 写入
存储桶 - 追加
存储桶 - 读取
评论 - 管理
数据集 - 导出
集成 - 写入
模型 - 管理
来源 - 管理
数据流 - 消耗
数据流 - 管理
You can view everything within a project, upload or export data, configure integrations, publish model versions, manage streams, and consume predictions from them. You cannot review and label data. Also, you cannot create, update, or delete datasets or alerts.
IXP 模型训练者项目CM and UCD警示 - 读取
数据集 - 审核
数据集 - 写入
集成 - 读取
来源 - 读取敏感信息
数据流 - 读取
You can view everything within a project, review and label data, and publish model versions. You can also create and update datasets, but you cannot delete them.
IXP 查看者项目CM and UCD警示 - 读取
数据集 - 读取
集成 - 读取
来源 - 读取
数据流 - 读取
您可以查看项目中的所有内容。您无法创建、更新或删除任何内容。
备注:

由于权限是在项目级别授予的,因此用户可能需要针对不同项目的不同权限。

权限类型

定义授予用户特定操作或资源的访问权限级别。

权限类型描述
服务权限您可以查看审核日志并管理租户的项目和用户。
来源权限请参考您公司上传的数据进行分析。
数据集权限授予数据集访问权限,即标签、常规字段和训练数据的命名集合。
流权限授予对流的访问权限,以便您对新提取的数据执行操作。
存储桶权限授予对存储桶的访问权限,存储桶是您可以上传的原始数据项目的容器。
集成权限授予对集成的访问权限,从而允许您将其他服务连接到平台。
包权限(预览)授予对包的访问权限,其中包含为 Flow 项目部署到 Orchestrator 文件夹的模型版本。
实用程序权限其中包括不属于其他任何类别的任何权限。
备注:

存储桶、集成和实用程序权限通常仅授予编程用户(如开发工程师)。此外,在平台的日常使用过程中,这些权限不是必需权限。

权限

备注:

“修改用户”“查看用户”“上传文件”权限已被弃用,因为在可用角色之外,不需要再将其作为独立权限来使用。

管理页面的管理访问权限选项卡中,您可以将角色分配给特定用户。每个角色都附带一组预定义权限,因此权限无法单独分配。相反,您必须分配拥有所有相关权限的主要角色。

权限类型权限Applies to权限说明
服务(仅限非项目)租户 - 管理CM and UCDCreate, modify, and delete projects and users for a tenant, and set the tenant quotas. In Unstructured and Complex Documents projects, this permission is required to create and delete projects, as well as their runtime deployments. Additionally, all admins on UiPath Automation Cloud™ also receive this permission in the IXP platform automatically.
服务(仅限非项目)审核日志 - 读取CM and UCD查看审核日志。
来源来源 - 读取CM and UCDView sources and the messages they contain. This is required to view individual messages on the platform. For Unstructured and Complex Documents, this permission is required alongside Dataset - Read to open a project. Without it, you can see the project, but you cannot access it.
来源来源 - 读取敏感信息
(授权来源 - 读取
CM and UCDView any user properties marked as sensitive, in addition to others. Without this permission, sensitive values are redacted in any request that returns messages or documents.
来源来源 - 管理
(授权来源 - 读取敏感信息
CM创建、修改和删除来源。您必须通过 API 创建源。
来源评论 - 管理CM and UCDCreate, update, and delete messages in a Communications Mining source via the API or the UI, as well as upload and delete design-time documents in an Unstructured and Complex Documents project.
数据集数据集 - 读取*CM and UCDView annotated and predicted labels on the datasets of the user. This is required to view individual messages on the platform. In Unstructured and Complex Documents projects, this permission covers the documents, annotations, and predictions of a project.
数据集数据集 - 管理
(授予数据集 - 写入数据集 - 读取数据集 - 审核)
CM创建、更新和删除数据集。
数据集数据集 - 写入
(Grants Dataset - Read, Model - Manage, Dashboard - Write)
CM and UCDCreate datasets and update their properties, for example, their description, sources and general fields, as well as enabling Quality of Service and Tone analysis. In Unstructured and Complex Documents projects, this permission also grants importing and exporting taxonomies.
数据集数据集 - 审核
(授权数据集 - 读取
CM and UCDCreate, edit, and delete taxonomy elements, including labels, field groups, and fields, and annotate them on messages or documents.
数据集数据集 - 导出CM and UCDExport datasets via the user interface. In Unstructured and Complex Documents projects, this permission (together with Dataset - Read and Source - Read) is required to export projects through the command-line interface (CLI). You do not need it to download documents from the user interface.
数据集模型 - 管理CM and UCDPublish and unpublish trained models and update their tags.
数据集仪表板 - 写入CM创建或修改仪表板。
数据流 - 读取CM查看流及其配置。
数据流 - 管理CM创建、修改和删除流。
数据流 - 消耗CM获取并推进流的输出。
存储桶存储桶 - 读取CM查看有关原始数据存储桶的信息。
存储桶桶项目 - 读取CM从原始数据存储桶下载项目。
存储桶存储桶 - 写入CM添加或删除原始数据存储桶。
存储桶存储桶 - 追加CM将数据上传到存储桶。
集成集成 - 读取CM查看有关外部集成的信息。
集成集成 - 写入CM添加或删除与外部服务的集成。
包(预览版)包 - 读取UCD在租户中查看包。
包(预览版)包 - 写入UCD在租户中创建和修改包。
包(预览版)包 - 删除UCD删除租户中的包。
实用程序项目 - 执行UCDRead and upload documents, and consume runtime predictions, and list Unstructured and Complex Documents projects or models. This permission applies when runtime permission checks are enabled.
实用程序警示 - 读取CM查看警示及其引发的问题。
实用程序警示 - 写入CM创建、修改和删除警示。
实用程序设备配置 - 读取CM获取设备配置。
实用程序设备配置 - 写入CM上传新配置或替换现有设备配置。
备注:

*要在平台中查看与来源、数据集或消息相关的任何数据,需要同时具备来源 - 读取数据集 - 读取角色或其父角色。

Permissions in Unstructured and Complex Documents projects

For a better understanding of how to use these roles and permissions in your Unstructured and Complex Documents projects, refer to Roles and permissions in Unstructured and Complex Documents projects.

自定义角色

除了默认的智能提取处理 (IXP) 角色以外,您还可以创建和管理自定义角色。根据用户的特定需求和权限调整自定义角色,有助于您更符合组织的需求。

自定义角色可在租户级别或项目级别使用。

租户级别角色

租户级角色可以授予以下权限:

标准权限
  • 授权/操作:读取在创建自定义角色或查看角色时,用户可以读取操作或权限。
  • 授权/角色:读取、更新、创建、删除根据所选权限,用户可以查看、更新或删除现有角色,也可以创建新的自定义角色。
  • 授权/角色分配:读取、更新、创建、删除 根据所选权限,用户可以查看、更新或删除现有角色分配。此外,用户可以通过“创建”权限分配角色。
  • IXP:智能提取处理 (IXP)
    • Audit Log - Read: Users can view the IXP audit logs.
    • Packages - Read: Users can view the packages in the tenant.
其他权限
  • 授权/角色分配:导出角色分配数据用户可以提取并下载有关角色分配的信息,包括哪些角色分配给了哪些身份,例如用户、组或服务帐户。要导出角色分配数据,请转到 Automation Cloud,选择“管理员” ,然后选择“帐户和本地组” ,然后“下载角色分配”
  • IXP:智能提取处理 (IXP)
    • Can perform service-level administration tasks, manage quotas, and create and delete projects.
    • Create, modify, and delete packages in the tenant.
项目级别的角色

项目级角色可以授予以下权限:

标准权限
  • 授权/操作:读取在创建自定义角色或查看角色时,用户可以读取操作或权限。
  • 授权/角色:读取、更新、创建、删除根据所选权限,用户可以查看、更新或删除现有角色,也可以创建新的自定义角色。
  • 授权/角色分配:读取、更新、创建、删除 根据所选权限,用户可以查看、更新或删除现有角色分配。此外,用户可以通过“创建”权限分配角色。
  • IXP:智能提取处理 (IXP)
    • 警示 - 读取、写入
    • 设备配置 - 读取、写入
    • 存储桶 - 读取、写入
    • 桶项目 - 读取
    • 仪表板 - 写入
    • 数据集 - 读取、写入
    • 集成 - 读取、写入
    • 来源 - 读取
    • 流 - 读取、写入
其他权限
  • 授权/角色分配:导出角色分配数据用户可以提取并下载有关角色分配的信息,包括哪些角色分配给了哪些身份,例如用户、组或服务帐户。要导出角色分配数据,请转到 Automation Cloud,选择“管理员” ,然后选择“帐户和本地组” ,然后“下载角色分配”
  • IXP:智能提取处理 (IXP)
    • 将项目上传到原始数据存储桶。
    • Create, update, and delete messages in a Communications Mining source via the API or the UI, including CSV upload, as well as upload and delete design-time documents in an Unstructured and Complex Documents project.
    • 通过用户界面导出数据集。
    • 创建和删除数据集。授予除数据集导出以外的所有其他数据集权限。
    • Create, edit, and delete taxonomy elements, including labels, field groups, and fields, and annotate messages or documents with them.
    • Publish and unpublish trained models and update their tags.
    • Read and upload documents, and consume runtime predictions from Unstructured and Complex Documents projects.
    • 创建、修改和删除来源。
    • 查看已标记为敏感的任何用户属性以及其他属性。
    • 获取并推进流的输出。
    • 创建、修改和删除流。
创建自定义角色

要创建自定义角色,请按照以下步骤操作:

  1. 转到“管理”页面,然后选择“管理访问权限”
  2. 选择 “服务”, 然后选择“角色”选项卡。
  3. 选择“创建角色”, 然后填写以下字段:
    • 角色名称 - 为您的角色提供描述性名称。
    • 描述 - 可选择提供描述。
    • 类别 - 选择:
      • 租户 - 您可以在租户级别分配此角色,该角色由租户级权限组成。
      • 项目 - 您可以将此角色分配给现有或新项目,并由项目级权限组成。
  4. 选择 “下一步”, 继续进入“权限”页面。
  5. “标准权限”“其他权限”选项卡中,选择要分配给自定义角色的权限。
  6. 选择“创建”
查看自定义角色

要查看自定义角色,请按照以下步骤操作:

  1. 导航到“管理”页面,然后选择“管理访问权限”
  2. 选择 “服务” 或项目文件夹,然后选择 “角色”选项卡。
  3. 选择您要查看的自定义角色的省略号。
  4. 选择“查看”
编辑自定义角色

要编辑自定义角色,请按照以下步骤操作:

  1. 转到“管理”页面,然后选择“管理访问权限”
  2. 选择 “服务” 或项目文件夹,然后选择 “角色”选项卡。
  3. 选择您要编辑的自定义角色的省略号。
  4. 选择“编辑”,以修改自定义角色的描述和权限。
  5. 进行更改后,请选择 “更新”
复制自定义角色

要复制自定义角色,请按照以下步骤操作:

  1. 导航到“管理”页面,然后选择“管理访问权限”
  2. 选择 “服务” 或项目文件夹,然后选择 “角色”选项卡。
  3. 选择您要复制的自定义角色的省略号。
  4. 选择 “复制和自定义”, 以创建角色的副本并修改其描述和权限。
  5. 进行更改后,请选择“ 创建”。
删除自定义角色

要移除自定义角色,请按照以下步骤操作:

  1. 转到“管理”页面,然后选择“管理访问权限”
  2. 选择 “服务” 或项目文件夹,然后选择 “角色”选项卡。
  3. 选择您要编辑的自定义角色的省略号。
  4. 选择“删除”。
    备注:

    删除自定义角色也会删除所有相关的角色分配。

  • 角色及其基本权限
  • 权限类型
  • 权限
  • Permissions in Unstructured and Complex Documents projects
  • 自定义角色

此页面有帮助吗?

连接

需要帮助? 支持

想要了解详细内容? UiPath Academy

有问题? UiPath 论坛

保持更新