Skip To Content

Configure roles

In this topic

As an Administrator of your organization, you can configure custom roles to add control and flexibility to the existing User, Publisher, and Administrator roles in an organization. For example, you might have some members who need access to your maps and apps but do not need to create groups and you might have other members who need to publish hosted feature layers but not hosted tile layers. You can use predefined templates to get started and further refine the privileges based on the specific workflows in your organization. Some privileges are reserved for the Administrator. Information about the roles and the number of members assigned to each role appear on the page.

  1. Verify that you are signed in as an Administrator of your organization.
  2. Click My Organization at the top of the site and click Edit Settings.
  3. Click Roles on the left side of the page.
  4. Create, view, edit, or delete your custom roles:
    • To create a new custom role, click Create Role and enter a name and description for the role. The name must be unique within your organization and can contain up to 128 characters. They are case insensitive. Administrator, Publisher, and User cannot be used as names for custom roles. The description can have up to 250 characters.

      Choose an existing role or template on which to base the new role. Templates contain sets of privileges for common custom roles such as viewer and author. You can use them as starting points for configuring your organization's roles. Select the privileges for the custom role and click Save Role.

      Caution:

      Some workflows require a combination of privileges. For example, to publish hosted tile layers or publish hosted feature layers, you also need privileges to create items. To publish apps from the map viewer or group pages, you need privileges to share items and create items.

    • To view information about a role, click Role Information Role Information in the row of the role. A pop-up appears with a description and a list of privileges. The row also contains the number of members assigned to each role.
    • To edit one of your existing custom roles, click Edit Role Edit Role in the row of the role. Change the name, description, or privileges and click Save Role. You cannot edit an Esri-defined core role (Administrator, Publisher, or User).
    • To delete one of your existing custom roles, click Delete Role Delete Role in the row of the role. You cannot delete a role that is currently assigned to a member or an Esri-defined core role (Administrator, Publisher, or User).

Templates

Templates contain a set of predefined privileges for common workflows such as consuming content and curating data. Use them as they have been configured or further customize them by adding and removing the privileges that fit the needs of your organization. The following templates are currently available.

  • Viewer—Content consumers who interact with maps and view content shared to them in groups.
  • Analyst—Map-centric staff who create maps, share across the organization or with groups, publish hosted feature layers, and edit features.
  • Author—Content creators, in addition to the privileges of the analyst, create groups and publish hosted tile layers.
  • Student—Members of a school organization who have general privileges to create content, join groups, share with groups and the organization, and edit features.
  • Publisher—Esri-defined Publisher role who, in addition to the author, can share content with the public, and make groups visible inside and outside the organization (depending on the security settings of the organization).
  • User—Esri-defined User role who can create content and groups, and share them inside and outside the organization (depending on the security settings of the organization).

Recommended workflow

Before you assign custom roles to members, you may want to test that the set of privileges in the role work as you intend. A recommended workflow is to define your custom role and assign it to an account where you can verify your desired privileges. You can edit the role, if necessary, and assign it to members of your organization.

Recommended workflow for configuring roles