Granting Cloudera Data Platform Users access to Cloudera AI Workbenches
This topic describes how to grant the MLAdmin and MLUser roles to
users/groups that must be allowed to provision/list and access Cloudera AI Workbencheswithin a specific environment.
Log in to the Cloudera AI web interface.
For a specific environment, grant the MLAdmin and MLUser roles to
users/groups that must be allowed to provision/list and access Cloudera AI Workbenches within that
environment. In addition, if a user needs to provision, upgrade, or delete an Cloudera AI Workbench, they also need the account-level EnvironmentAdmin role assigned. For
more information, see Understanding account roles and resource roles.
Click Environments.
Search for the environment and navigate to the environment's
Clusters page.
Expand the Actions dropdown and click Manage
Access.
Search for the user or group that requires access to the Cloudera AI service in this
environment and assign one of the following roles to each user/group:
MLAdmin - This role grants a Cloudera Data Platform user/group the ability to
create and delete Cloudera AI Workbenches within a given Cloudera Data Platform environment.
MLAdmins will also have Site Administrator level access to all the workbenches
provisioned within this environment. That is, they can run workloads, monitor, and
manage all user activity on these workbenches.
OR
MLUser - This role grants a Cloudera Data Platform user/group the ability to list
Cloudera AI Workbenches provisioned within a given Cloudera Data Platform environment. MLUsers
will also be able to run workloads on all the workbenches provisioned within this
environment.
Click Update Roles.
If necessary, search for and assign the EnvironmentAdmin role in the same
way.