Role assignments
- Last UpdatedAug 03, 2026
- 1 minute read
Role assignments define access and permissions for the identities included in your CONNECT account, allowing users, clients, or groups to perform actions on specific resources.
A role assignment includes an assignee and a role. The role assignment binds the assignee (an identity like a user, client, or group) to a role, which defines base access and permissions for the identity. You can assign multiple role assignments to a single assignee.
When you create a role assignment, you can include multiple assignees, but at the time of creation, a unique role assignment is created for each assignee added. Role assignments for each assignee must then be managed individually.
Role assignment best practices
-
Use descriptive names. Give role assignments clear, descriptive names that indicate their purpose. This makes it easier to manage permissions over time.
-
Prefer groups over individuals. When possible, create role assignments for groups rather than individual identities. This makes permission management more scalable.
-
Regular review. Periodically review role assignments to ensure they align with current access requirements. Remove or update assignments that are no longer needed.
Next steps
-
To create a new role assignment, see Create new role assignment.
-
To browse existing role assignments, see View role assignments and View role assignment details.
-
To complete other role assignment management tasks, see Manage role assignments.