How to Configure Custom Administrative Roles and Multi-User RBAC Groups in Vinchin

Product: Vinchin Backup & Recovery

Version: V9.0

KB Number: 200183

Last Modified: 2026-06-30 11:02:39

KB Title:

How to Configure Custom Administrative Roles and Multi-User RBAC Groups in Vinchin

 

Category: Configuration & Management

Applies To: Vinchin Backup & Recovery (All Versions supporting Role-Based Access Control)

 

 

Summary

This article provides step-by-step guidance on how to create a custom administrative role, bind it to a local user group, and provision multiple administrator accounts with full-management privileges (e.g., adding storage, configuring jobs, and execution of restores)

 

Scenario / Business Requirement

Enterprise environments often require multiple administrators to manage the backup infrastructure concurrently. Instead of sharing a single root/admin credential, security best practices dictate creating individual user accounts grouped under a unified administrative role (VinchinAdmins) with granular or full system permissions.

 

Solution / Resolution Steps

To implement a multi-administrator group with full management privileges, please follow the three-stage configuration workflow below:

Stage 1: Create the Custom Administrative Role

  1. Log in to the Vinchin Backup & Recovery web console as the default system administrator.
  2. Navigate to System > User Management > Roles (or your corresponding UI path).
  3. Click Add / Create Role.
  4. Name the role as 'VinchinAdmins'.
  5. Enable the Global Observer to view and manage all resources.
  6. In the permissions matrix checklist, select all functional modules to grant full access (including but not limited to: Storage Management, Backup Job Configurations, Restore Operations, and System Settings).
  7. Save the role configurations.

 

 

Stage 2: Create the User Group and Assign the Role

  1. Navigate to System > User Management > Groups.
  2. Click Add Group and define the group name as VinchinAdmins.
  3. Enable the Global Observer. When enabled, only global observer roles and users are loaded; when disabled, all other roles and users are loaded
  4. In the role assignment dropdown/section, select the VinchinAdmins role created in Stage 1.
  5. Save the group settings to bind the role permissions to this group container

 

 

Stage 3: Provision Individual Administrator Accounts

  1. Navigate to System > User Management > Users.
  2. Click Create User to add the individual accounts sequentially (e.g., Admin_A, Admin_B, Admin_C).
  3. Also grant the Global Observer role to the user. When enabled, only global observer roles and user groups are loaded; when disabled, all other roles and user groups are loaded
  4. Fill in the required credentials and user profile details.
  5. Under the Group Membership option, assign each user to the newly created VinchinAdmins role and group.
  6. Save each user profile.

 

 

Verification

To verify the access privileges:

  1. Log out of the current root/admin session.
  2. Log in using one of the newly created accounts (e.g., Admin_A).
  3. Attempt to perform administrative tasks such as adding a dummy storage target or staging a recovery job to ensure full functionality is properly inherited.

60-DAY FULL-FEATURED FREE TRIAL

  • No credit card required
  • Get started in 10 minutes