A10 Control Predefined Roles

A10 Control’s predefined roles cover common needs:

Role Persona Type Access Level Description

Certificate Admin

Org Member

- App Services: Read Only

- Clusters: Read Only

- Org Units: Read Only

Manage certificates: CSR generation, import/export, renewal, and deletion

Device Communicator

Org Member

- App Services: No Access

- Clusters: No Access

- Org Units: No Access

No access to any resources; typically used to access Thunder devices.

Infra Admin

Org Member

- Clusters: Read & Write

- App Services: Read Only

- Org Units: Read Only

Full access to Infrastructure, Utilities, and Monitoring resources

Infra Operator Org Member

- Clusters: Read Only

- App Services: Read Only

- Org Units: Read Only

View-only access to clusters, devices, Org Units, and App Services

Org Unit Admin

Org Unit

- App Services: Read & Write

- Clusters: Read Only

- Org Units: Read & Write

Manages all Org Unit-level operations; limited to viewing cluster data

Org Unit Operator

Org Member

- App Services: Read Only

- Clusters: Read Only

- Org Units: Read Only

View-only access to app services within assigned Org Units and their partitions

Organization Admin

Organization

- App Services: Read & Write

- Clusters: Read & Write

- Org Units: Read & Write

Manages all App Services, clusters, users, and Org Units within their Organization (tenant)

Organization Operator

Org Member

- App Services: Read Only

- Clusters: Read Only

- Org Units: Read Only

View-only access across the entire organization – clusters, apps, and Org Units
Partition Admin Org Member

- Service Partition: Read & Write

- Clusters: Read Only

- Org Units: Read Only

Full control over app services within assigned partitions

Partition Operator

Org Member

- App Services: Read Only

- Clusters: Read Only

- Org Units: Read Only

View-only access to assigned partitions, App Services, and clusters

COMPANY INFORMATION: Copyright © 2025 A10 Networks, Inc. All Rights Reserved. Legal Notice