Ascio DNS

Roles and Users

Ascio DNS partner has master administrator rights. That means he/she can view and manage everything within his/her Ascio DNS portfolio. There can only be one level of users under Ascio DNS partner account. Every user must have a role assigned to him/her. Only one role can be assigned to a user. The roles are linked to one or more pre-defined user rights that allow doing certain kind of operations. E.g. Update any zone within partner portfolio, create users within partner portfolio etc. Every user has read access to his/her portfolio and can update his/her details e.g. email, password etc.

Roles level and description

Role Level Description Example
StaffAdvanced Typically for Ascio DNS Partner’s staff members. User having this role can read, search and manage users and zones within the partner portfolio. However, cannot update/delete partner account details e.g. email, password etc. Also can only create another user with StaffBasic, CustomerAdvanced or CustomerBasic role. John is a staff member of an Ascio DNS partner with StaffAdvanced role. He can view all zones and users within the partner portfolio. He can create, update, and delete users and zones within the partner portfolio. New user will be created under the partner’s account, not as a sub-user of the John.
StaffBasic Typically for Ascio DNS Partner’s staff members. User having this role can read and search users and zones within the partner portfolio. John is a staff member of an Ascio DNS partner with StaffBasic role. He can view all zones and users within the partner portfolio. No updates except John’s own name, email and password are allowed.
CustomerAdvanced Typically for the partner’s customers User having this role can read, create, update, delete and search zones within own portfolio. John is a customer of an Ascio DNS partner with CustomerAdvanced role. He can view, search and manage all his/her zones.
CustomerBasic Typically for the partner’s customers User having this role can read and search zones within own portfolio. John is a customer of an Ascio DNS partner with CustomerBasic role. He can only view and search his/her zones.

Users and Zones

Zones can directly be linked to the Ascio DNS partner or one of its users. If a user own any zones and needs to be deleted, then zones must be deleted or moved to another user’s account or Ascio DNS partner’s account himself before deleting the user. Users with StaffBasic and StaffAdvanced roles can view and manage (applicable for StaffAdvanced role) other users’ zones within the partner portfolio.

Headers

Ascio DNS Service requires at least two headers with correct values to be passed in each request in order to login successfully. In addition to that, one more header is required if partner’s users (staff member or customers) need to login. Below is the description of the different headers.

Header Name Description
UserName Ascio DNS partner or its customers username Required in each request
Password Ascio DNS partner or its customers password Required in each request.
Account If partner’s user (staff member or customer) needs to login then this header must be passed with the partner’s username. Required in each request if partner’s users needs to login. Otherwise is optional.
TrackingReference This is provided by the ADNSS client and is passed between request (in header) and response (in Response object). ADNSS stores the TrackingReference in its log files. So, in some cases partners may contact Ascio Partner Service to know what was done against the specific TrackingReference. Optional
WSDL AscioDns
https://dnsservice.demo.ascio.com/2010/10/30/DnsService.wsdl (OTE)
https://dnsservice.ascio.com/2010/10/30/DnsService.wsdl (Live)
Please configure the IP-Whitelisting in the portal/demo-portal.