Prisma Cloud Compute: Read only access to resource list assets

Prisma Cloud Compute: Read only access to resource list assets

170
Created On 01/12/23 19:43 PM - Last Modified 07/14/26 15:55 PM


Symptom


Read-only viewer permission user is unable to see any data under:

Console UI > Monitor > Vulnerability > Images > Registry



Environment


  • Prisma Cloud SaaS
  • RBAC
  • User Permissions


Cause


We must have ‘account groups’ configured with the ‘account ID’ of the read-only users under the Account group edit page
Console UI > Settings > Account Groups > Select Account Groups > Edit button​​ 

The non-Onboarded Account IDs field was empty (no value provided here).


Resolution


  1. Resource list created based on following e.g.


     
  2. Role created based on the following e.g.


     
  3. Permission group for the ‘read-only’ users as below:






     
  4. Please login into the Prisma cloud SaaS console UI with ‘Sysadmin’ or with ‘system administrator’ privilege account.
  5. Click on Settings - Account Groups - Select your account – Under the Action column, click the ‘edit’ button.
     

  1. On the Edit page, under the “Non-Onboarded Account IDs”, enter the ‘account ID’ for e.g. “email ID or AWS account ID”


     
  2. Click on the ‘Save’ button.
  3. Open up a new tab(in-cognito mode in Chrome browser), login into your ‘read-only’ user account.
     
  4. Then go to the following page:

    Compute > Monitor > Vulnerability > Images > Registry page and he should be able to see the data as below.



Actions
  • Print
  • Copy Link

    https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA14u000000kGEbCAM&lang=en_US&refURL=http%3A%2F%2Fknowledgebase.paloaltonetworks.com%2FKCSArticleDetail