Permissions in Zabbix depend on the user type, customized user roles and access to hosts, which is specified based on the user group.
Permissions in Zabbix depend, primarily, on the user type:
The following table illustrates access to Zabbix menu sections per user type:
|Menu section||User||Admin||Super admin|
|Triggers top 100||+||+||+|
User roles allow to make custom adjustments to the permissions defined by the user type. While no permissions can be added (that would exceed those of the user type), some permissions can be revoked.
Furthermore, a user role determines access not only to menu sections, but also to services, modules, API methods and various actions in the frontend.
User roles are configured in the Users → User roles section by Super admin users.
User roles are assigned to users in the user configuration form, Permissions tab, by Super admin users.
Access to any host and template data in Zabbix is granted to user groups on the host/template group level only.
That means that an individual user cannot be directly granted access to a host (or host group). It can only be granted access to a host by being part of a user group that is granted access to the host group that contains the host.
Similarly, a user can only be granted access to a template by being part of a user group that is granted access to the template group that contains the template.