Skip to content

Commit dc0c66a

Browse files
gmondelloclaude
andcommitted
security: update custom roles permissions reference
Add permissions available in custom roles that the reference was missing: - Licensing: "Manage licenses" (docker/iam-services#1173, BILL-5010) - DHI: "Manage customizations" - Cloud Sandboxes: "Use Cloud Sandboxes" (docker/iam-services#1172) Co-Authored-By: Claude Opus 5.5 (1M context) <noreply@anthropic.com>
1 parent 18bbfee commit dc0c66a

1 file changed

Lines changed: 23 additions & 9 deletions

File tree

‎content/manuals/security/roles-and-permissions/custom-roles/permissions-reference.md‎

Lines changed: 23 additions & 9 deletions
Original file line numberDiff line numberDiff line change
@@ -3,12 +3,12 @@ title: Custom role permissions reference
33
linkTitle: Permissions reference
44
description: >-
55
Permissions available for Docker custom roles across organization management,
6-
Docker Hub, billing, AI Governance, Docker Hardened Images, and Docker
7-
Offload.
6+
Docker Hub, billing, licensing, AI Governance, Docker Hardened Images,
7+
Docker Offload, and Docker Cloud Sandboxes.
88
keywords: >-
99
custom roles, custom role permissions, Docker, Docker Hub, organization
10-
management, billing, AI Governance, access tokens, SSO, SCIM, OIDC, DHI,
11-
Docker Offload, security
10+
management, billing, licensing, licenses, AI Governance, access tokens, SSO,
11+
SCIM, OIDC, DHI, Docker Offload, Cloud Sandboxes, security
1212
weight: 20
1313
aliases:
1414
- /enterprise/security/roles-and-permissions/custom-roles/permissions-reference/
@@ -17,8 +17,9 @@ aliases:
1717
{{< summary-bar feature_name="Custom roles" >}}
1818

1919
Custom roles use permissions from organization management, Docker Hub,
20-
billing, AI Governance, Docker Hardened Images, and Docker Offload. Use
21-
the following tables to [create or edit a custom role](manage.md).
20+
billing, licensing, AI Governance, Docker Hardened Images, Docker
21+
Offload, and Docker Cloud Sandboxes. Use the following tables to [create
22+
or edit a custom role](manage.md).
2223

2324
## Organization management
2425

@@ -58,6 +59,12 @@ the following tables to [create or edit a custom role](manage.md).
5859
| View billing | View organization billing information |
5960
| Manage billing | Complete access to managing organization billing |
6061

62+
## Licensing
63+
64+
| Permission | Description |
65+
| :-------------- | :---------------------------------------------------------------------------------------------------------------------------------- |
66+
| Manage licenses | Assign and revoke licenses for members and manage auto-assign rules. Does not include purchasing or changing the number of licenses |
67+
6168
## AI Governance
6269

6370
| Permission | Description |
@@ -69,16 +76,23 @@ the following tables to [create or edit a custom role](manage.md).
6976

7077
## DHI (Docker Hardened Images)
7178

72-
| Permission | Description |
73-
| :----------------- | :----------------------------------------------- |
74-
| Create DHI mirrors | Create Docker Hardened Image mirror repositories |
79+
| Permission | Description |
80+
| :-------------------- | :-------------------------------------------------------------- |
81+
| Create DHI mirrors | Create Docker Hardened Image mirror repositories |
82+
| Manage customizations | Create, update, and delete Docker Hardened Image customizations |
7583

7684
## Docker Offload
7785

7886
| Permission | Description |
7987
| :---------------- | :--------------------------------------------- |
8088
| Offload Read-Only | View Offload account status, leases, and zones |
8189

90+
## Cloud Sandboxes
91+
92+
| Permission | Description |
93+
| :------------------ | :------------------------------------ |
94+
| Use Cloud Sandboxes | Create and use Docker Cloud Sandboxes |
95+
8296
## Next steps
8397

8498
- [Manage custom roles](manage.md): Create, assign, and delete custom

0 commit comments

Comments
 (0)