It seems like your browser didn't download the required fonts. Please revise your security settings and try again.
Barracuda Email Gateway Defense
formerly Email Security

Roles and Permissions

  • Last updated on

If you make setting changes, allow a few minutes for the changes to take effect.

Role-based administration allows the administrator to define access restrictions within Email Gateway Defense based on assigned user roles and domain permissions. This provides flexibility and task delegation, as well as the ability to track activity and changes made in Email Gateway Defense by user, role, or domain.

Note that users can be assigned only one role.

User Roles

  • Administrator – Administrators can:

    • View messages for any domain within the account.

    • Deliver messages for any domain within the account.

    • View and edit all information about a domain.

    • View and edit all domain level settings and policies.

    • View and edit all account level settings and policies.

    • Impersonate users in the Users list.

    • View, search, and export the Audit log.

    • View in-product Support pages and modify security settings view and modify all aspects of all domains, and configure global and domain-level settings.

  • Domain administrator – For domains to which they are granted Admin privileges, Domain administrators can:

    • View messages for any recipient within a permitted domain.

    • Deliver messages for any recipient within a permitted domain.

    • View and edit all information about a permitted domain.

    • View and edit all domain level settings and policies within the permitted domain.

    • Impersonate users in the Users list within the domain.

    • View, search, and export the Audit log.

  • Help Desk – Help Desk role users can:

    • View message headers for any recipient within a permitted domain.

    • Deliver messages for any recipient within a permitted domain.

    • View all domain level settings and policies within the permitted domain.

      Note: The Help Desk role cannot view the message body for recipient messages within the domain or the Audit log.

  • User – Users can configure user-level settings on their own account based on the security requirements implemented by the account or domain administrator:

    • View messages.

    • Deliver messages.

    • Update user sender policies.

    • Modify quarantine notification settings.

Assign Roles and Domain Permissions

Use the steps in this section to assign roles and domain permissions. This section assumes you have added users via LDAP or Microsoft Entra ID authentication, or manually added user accounts to on the Users > Add/Update Users page. For more information, see also Understanding User Accounts.

  1. Log into Email Gateway Defense, and go to the Users > User List page.

  2. For the desired user, click Edit in the Actions column; the Edit User page displays.

  3. From the User Role drop-down menu, select the role you want to assign to the user.

  4. If you assign the user either the Help Desk or Domain Admin role, in the Domains section, select one or more domains you want the user to manage.

  5. Click Save.

  6. Repeat steps 1 through 5 to change a user role and domain permissions.

View User Roles and Domain Permissions

Use the User List to view a list of all users and filter based on assigned roles and domain permissions.

  1. Log into Email Gateway Defense, and go to the Users > User List page.

  2. From the User Role drop-down menu, select a role on which to filter the user list.

  3. If you selected any role other than User, from the Domains drop-down menu, select All to filter on all domains, or select a single domain on which to filer the user list.

  4. Use the controls below the table to page through the results.

Notification

Send an email notification to users you have assigned to a new role and include their access privileges.