Roles and Users
Ascio DNS partner has master administrator rights. That means he/she can view and manage everything within his/her Ascio DNS portfolio. There can only be one level of users under Ascio DNS partner account. Every user must have a role assigned to him/her. Only one role can be assigned to a user. The roles are linked to one or more pre-defined user rights that allow doing certain kind of operations. E.g. Update any zone within partner portfolio, create users within partner portfolio etc. Every user has read access to his/her portfolio and can update his/her details e.g. email, password etc.
Roles level and description
|StaffAdvanced||Typically for Ascio DNS Partner’s staff members. User having this role can read, search and manage users and zones within the partner portfolio. However, cannot update/delete partner account details e.g. email, password etc. Also can only create another user with StaffBasic, CustomerAdvanced or CustomerBasic role.||John is a staff member of an Ascio DNS partner with StaffAdvanced role. He can view all zones and users within the partner portfolio. He can create, update, and delete users and zones within the partner portfolio. New user will be created under the partner’s account, not as a sub-user of the John.|
|StaffBasic||Typically for Ascio DNS Partner’s staff members. User having this role can read and search users and zones within the partner portfolio.||John is a staff member of an Ascio DNS partner with StaffBasic role. He can view all zones and users within the partner portfolio. No updates except John’s own name, email and password are allowed.|
|CustomerAdvanced||Typically for the partner’s customers User having this role can read, create, update, delete and search zones within own portfolio.||John is a customer of an Ascio DNS partner with CustomerAdvanced role. He can view, search and manage all his/her zones.|
|CustomerBasic||Typically for the partner’s customers User having this role can read and search zones within own portfolio.||John is a customer of an Ascio DNS partner with CustomerBasic role. He can only view and search his/her zones.|
Users and Zones
Zones can directly be linked to the Ascio DNS partner or one of its users. If a user own any zones and needs to be deleted, then zones must be deleted or moved to another user’s account or Ascio DNS partner’s account himself before deleting the user. Users with StaffBasic and StaffAdvanced roles can view and manage (applicable for StaffAdvanced role) other users’ zones within the partner portfolio.
Ascio DNS Service requires at least two headers with correct values to be passed in each request in order to login successfully. In addition to that, one more header is required if partner’s users (staff member or customers) need to login. Below is the description of the different headers.
|UserName||Ascio DNS partner or its customers username||Required in each request|
|Password||Ascio DNS partner or its customers password||Required in each request.|
|Account||If partner’s user (staff member or customer) needs to login then this header must be passed with the partner’s username.||Required in each request if partner’s users needs to login. Otherwise is optional.|
|TrackingReference||This is provided by the ADNSS client and is passed between request (in header) and response (in Response object). ADNSS stores the TrackingReference in its log files. So, in some cases partners may contact Ascio Partner Service to know what was done against the specific TrackingReference.||Optional|
Please configure the IP-Whitelisting in the portal/demo-portal.