- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
‎04-13-2017 05:49 AM
I have an ITIL user trying to do a quick discovery and when he clicks on magnifying glass to select mid server he is getting security constraints. Which ACL do I need to edit for him to see the mid servers?
Solved! Go to Solution.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
‎04-18-2017 07:46 AM
This was ServiceNow recommendations. Create a Discover by ip address and update the script and it worked.

- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
‎04-13-2017 06:18 AM
Thanks John.
Best practice: If you don't already have it, create a group for those desktop techs.
Grant the appropriate role to those techs to allow them to read those records.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
‎04-13-2017 06:51 AM
Chuck,
The reason I don't want to give them roles is we want them limited as possible. I don't want them being able to mess with the mid servers or discovery schedules. So can I just add the role to read, write, delete and they should be able scan by ip address using quick discovery?
Thanks,
John

- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
‎04-13-2017 06:54 AM
Technically, Quick Discovery creates a schedule (and runs now). I don't think you're going to get where you need to be with a limited approach on the ACLs. Eventually you'll find you need to open those ACLs up as much as the existing roles require.
glennpinto - any thoughts on this one?
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
‎04-13-2017 07:29 AM
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
4 weeks ago
To resolve this issue, you have to add the "ITIL" role to the ACL created for the DiscoveryAjax script include.