Cisco Cisco Email Security Appliance C690 User Guide

Page of 456
Chapter 8      Common Administrative Tasks
Managing Custom User Roles for Delegated Administration
8-42
Cisco IronPort AsyncOS 7.5 for Email Daily Management Guide
OL-25138-01
  •
View assigned, edit assigned: Delegated administrators can view and edit 
the mail policies and content filters assigned to the custom user role and 
create new content filters. Delegated administrators can edit a policy’s 
Anti-Spam, Anti-Virus, and Outbreak Filters settings. They can enable their 
content filters for the policy, as well as disable any existing content filter 
assigned to the policy, regardless of whether they are responsible for it. 
Delegated administrators cannot modify a mail policy’s name or its senders, 
recipients, or groups. Delegated administrators can modify the order of the 
content filters for mail policies assigned to their custom user role. 
  •
View all, edit assigned: Delegated administrators can view all mail policies 
and content filters on the appliance, but they can only edit the ones assigned 
to the custom user role.
View all, edit all (full access): Delegated administrators have full access to all of 
the mail policies and content filters on the appliance, including the default mail 
policies, and have the ability to create new mail policies. Delegated administrators 
can modify the senders, recipients, and groups of all mail policies. They can also 
reorder mail policies. 
You can assign individual mail policies and content filters to the custom user role 
using either the Email Security Manager or the Custom User Roles for Delegated 
Administration table on the User Roles page.
See the “Email Security Manager” chapter in the Cisco IronPort AsyncOS for 
Email Configuration Guide
 for more information on using the Email Security 
Manager for mail policies and content filters.
 for information 
on using the Custom User Roles for Delegated Administration table to assign mail 
policies and content filters.
DLP Policies
The DLP Policies access privileges define a delegated administrator’s level of 
access to the RSA Email DLP policies via the DLP Policy Manager on the Email 
Security appliance. You can assign RSA Email DLP policies to specific custom 
user roles, allowing delegated administrators, in addition to operators and 
administrators, to manage these policies.