From 00096a8be755a92cee12b080b5acfd32ba6b70b0 Mon Sep 17 00:00:00 2001 From: TimLFletcher Date: Wed, 9 Sep 2026 14:46:42 +0100 Subject: [PATCH] [DOC-14084][AI] Correct what the Read-Only Security Admin role can view The role was documented as unable to list users and groups. It can view them, from 8.0.1. Corrected the section intro and the Security row of the role table, which said "Cannot view or change users or groups". The same page already contradicted this at the Read-Only Admin role, which states that in 8.0 the permission to list users and groups was split off into ro_security_admin. Co-Authored-By: Claude Opus 5 --- modules/learn/pages/security/roles.adoc | 6 ++++-- 1 file changed, 4 insertions(+), 2 deletions(-) diff --git a/modules/learn/pages/security/roles.adoc b/modules/learn/pages/security/roles.adoc index 8c6bc9311e..9855c5ae50 100644 --- a/modules/learn/pages/security/roles.adoc +++ b/modules/learn/pages/security/roles.adoc @@ -245,7 +245,8 @@ h| Restrictions [#ro-security-admin] === Read-Only Security Admin -The Read-Only Security Admin role lets the user view all security settings except for listing users and groups. +The Read-Only Security Admin role lets the user view all security settings. +As of Couchbase Server 8.0.1, this includes viewing the list of users and groups. This role lets the user log into the Couchbase Server Web Console. @@ -280,8 +281,9 @@ h| Restrictions | *Security* | View LDAP, SAML, certificates, encryption at rest, audit, and logging settings. +View users and groups. | Cannot make any changes to security settings. -Cannot view or change users or groups. +Cannot add, remove, or change users or groups. | *Settings* | View