Prisma Cloud Compute: Read only access to resource list assets
170
Created On 01/12/23 19:43 PM - Last Modified 07/14/26 15:55 PM
Symptom
Read-only viewer permission user is unable to see any data under:
Console UI > Monitor > Vulnerability > Images > Registry
Environment
- Prisma Cloud SaaS
- RBAC
- User Permissions
Cause
We must have ‘account groups’ configured with the ‘account ID’ of the read-only users under the Account group edit page
Console UI > Settings > Account Groups > Select Account Groups > Edit button
The non-Onboarded Account IDs field was empty (no value provided here).
Resolution
- Resource list created based on following e.g.
- Role created based on the following e.g.
- Permission group for the ‘read-only’ users as below:
- Please login into the Prisma cloud SaaS console UI with ‘Sysadmin’ or with ‘system administrator’ privilege account.
- Click on Settings - Account Groups - Select your account – Under the Action column, click the ‘edit’ button.
- On the Edit page, under the “Non-Onboarded Account IDs”, enter the ‘account ID’ for e.g. “email ID or AWS account ID”
- Click on the ‘Save’ button.
- Open up a new tab(in-cognito mode in Chrome browser), login into your ‘read-only’ user account.
- Then go to the following page:
Compute > Monitor > Vulnerability > Images > Registry page and he should be able to see the data as below.