Assign roles for CMDB success advisor users
Assign roles to control access to features, capabilities, and data in the CMDB success advisor application.
Before you begin
Set the application scope to CMDB success advisor using the application picker. For more information, see Application picker.
Role required: admin
About this task
Users with the following combination of roles can use the CMDB success advisor application.
| Role | Description | Applies to |
|---|---|---|
| sn_cmdb_admin | Required to access the CMDB success advisor. Users with the sn_cmdb_admin role can configure and improve CMDB data accuracy based on specific business use cases. | Data Foundations, HAM, and SAM dashboards |
| sn_cmdb_user | Provides read-only access to CMDB success advisor from the Insights section in Service Graph Workspace. Users with this role can view the Dashboard tab only. Users with this role can't access the Settings and Integrations tabs. | Data Foundations, HAM, and SAM dashboards |
| sn_cmdb_editor | Provides read-only access to CMDB success advisor from the Insights section in Service Graph Workspace. Users with this role can view the Dashboard tab only. Users with this role can't access the Settings and Integrations tabs. | Data Foundations, HAM, and SAM dashboards |
| sn_cmdb_advisor.scope_user | Provides read-only access to CMDB success advisor pages and data, including the AI-generated summary and remediation actions on the HAM dashboard. Note: Also, requires the sn_cmdb_user role. |
Data Foundations, HAM, and SAM dashboards |
| sn_cmdb_advisor.scope_editor | Required to edit dashboard scope and content template settings for SAM. The sn_cmdb_advisor.scope_editor role contains the sn_cmdb_advisor.scope_user role. Note: Also, requires the sn_cmdb_user role. For Data Foundations and HAM dashboards, editing scope requires the sn_cmdb_admin role. The scope_editor role doesn't grant scope edit access for these products. |
SAM dashboard |
| sam_user | Required to view the SAM advisor dashboard in read-only mode. | SAM dashboard |
| sam_admin | Required to select or edit the software products in the SAM advisor scope. | SAM dashboard |
| cmdb_inst_admin | Required to manage Service Graph Connector connections in SGC Central through CMDB success advisor. Note: Service Graph Connector data can be read without any additional role. The cmdb_inst_admin role is required for creating or modifying connector configurations through CMDB success advisor. |
Data Foundations and HAM dashboards |
| pd_user | Required to view Discovery and Service Mapping Patterns through CMDB success advisor with read-only access. | Data Foundations and HAM dashboards |
| pd_admin | Required to manage Discovery patterns with create and write access. | Data Foundations and HAM dashboards |
For more information, see Exploring CMDB success advisor.
Procedure
Assign roles to users and groups using the ServiceNow AI Platform user administration feature.
- To assign a role to a user, see Assign a role to a user.
- To assign a role to a group, see Assign a role to a group.