Collector Security / View Permissions
Right now there seems to be little security around viewing the collectors installed in our account. If i create a "demo" user and give them access to a single host group and view only rights "View hosts and subgroups", then login as that user, i can still right click on a host, go to edit, click on the collector list and view every single collector on the account. These collector names often contain the computer name or customer name they belong to which means that my demo user can now see other customers names and collectors.
Ideally what i would like to see is a collector view or security settings. Maybe on the users screen there is a setting that says "Collector Permissions" and then you can set which collectors the user can see and use. So if i set them as a "View only" user they could see their collector only. If i set them as a "View and Manage" type user, they could view only their collector but also add their own hosts.
Whatever you can come up with in the short term to limit the collector views would be great. The two spots i noticed this most was when you right click on a host and chose edit, and when you use the wizard to add a host. From both spots, regardless of your users permission level you can see all collectors. This is not ideal for an MSP type environment when I would need logins for different customers or user groups.
Please email or call me if you need any clarification or a demo. Kwoodhouse@curvature.com, 805-690-3735