Product: Vinchin Backup & Recovery
Version: V9.0
KB Number: 200183
Last Modified: 2026-06-30 11:02:39
KB Title:
How to Configure Custom Administrative Roles and Multi-User RBAC Groups in Vinchin
Category: Configuration & Management
Applies To: Vinchin Backup & Recovery (All Versions supporting Role-Based Access Control)
Summary
This article provides step-by-step guidance on how to create a custom administrative role, bind it to a local user group, and provision multiple administrator accounts with full-management privileges (e.g., adding storage, configuring jobs, and execution of restores)
Scenario / Business Requirement
Enterprise environments often require multiple administrators to manage the backup infrastructure concurrently. Instead of sharing a single root/admin credential, security best practices dictate creating individual user accounts grouped under a unified administrative role (VinchinAdmins) with granular or full system permissions.
Solution / Resolution Steps
To implement a multi-administrator group with full management privileges, please follow the three-stage configuration workflow below:
Stage 1: Create the Custom Administrative Role
- Log in to the Vinchin Backup & Recovery web console as the default system administrator.
- Navigate to System > User Management > Roles (or your corresponding UI path).
- Click Add / Create Role.
- Name the role as 'VinchinAdmins'.
- Enable the Global Observer to view and manage all resources.
- In the permissions matrix checklist, select all functional modules to grant full access (including but not limited to: Storage Management, Backup Job Configurations, Restore Operations, and System Settings).
- Save the role configurations.
Stage 2: Create the User Group and Assign the Role
- Navigate to System > User Management > Groups.
- Click Add Group and define the group name as VinchinAdmins.
- Enable the Global Observer. When enabled, only global observer roles and users are loaded; when disabled, all other roles and users are loaded
- In the role assignment dropdown/section, select the VinchinAdmins role created in Stage 1.
- Save the group settings to bind the role permissions to this group container
Stage 3: Provision Individual Administrator Accounts
- Navigate to System > User Management > Users.
- Click Create User to add the individual accounts sequentially (e.g., Admin_A, Admin_B, Admin_C).
- Also grant the Global Observer role to the user. When enabled, only global observer roles and user groups are loaded; when disabled, all other roles and user groups are loaded
- Fill in the required credentials and user profile details.
- Under the Group Membership option, assign each user to the newly created VinchinAdmins role and group.
- Save each user profile.
Verification
To verify the access privileges:
- Log out of the current root/admin session.
- Log in using one of the newly created accounts (e.g., Admin_A).
- Attempt to perform administrative tasks such as adding a dummy storage target or staging a recovery job to ensure full functionality is properly inherited.
60-DAY FULL-FEATURED FREE TRIAL
- No credit card required
- Get started in 10 minutes