Forum Discussion
On 5/2/2020 at 3:50 PM, mnagel said:a facility to define saved searches along with the ability to apply actions (like SDT) to those searches (or to multiple items in general)
You can "save a search", that's what a dynamic group does. And you can do SDT at the group level. Depending on the action desired, most things can be done on the group level. I always recommend additional group structure for management purposes that is separate from group structure for permissions and also separate from group structure for reporting.
I think the real issue here is permissions. If you gave that role permission to manage the target group, they could add devices to the group by navigating to the group, selecting manage, and in the "devices & collector" section, hitting the plus sign. The problem is that this allows the users to also delete that group and full RW to devices in the group. RBAC just needs to be more granular than "view, ack, manage, remote", perhaps with the ability to specify custom permission sets based on the four built in ones (like other tools already on the market).