Skip to content
Release: Australia · Updated: 2026-03-12 · Official documentation · View source

Cloud Configuration Governance roles and system properties

Cloud Configuration Governance users require the appropriate roles and system properties to perform various activities. These roles and system properties are installed with the activation of the application.

Only users with the user_admin or admin role can create users with these roles:

Descriptive name and role nameDescription and tasksNested roles
sn\_itom\_ccg.scheduling\_adminA scheduling admin can perform the following actions:- Create scan schedules. - Create CI finder mappings.discovery\_admin
sn\_itom\_ccg.governorA governor can perform the following actions:- Create policies by using condition builder, Integration Hub flows, or script. - Create a policy set. - Create resource collectors. - Create configuration keys. - Create remediation. - Create CI finder mappings.- flow\_designer - action\_designer - catalog\_admin
sn\_itom\_ccg.ccg\_operatorAn operator can perform the following actions:- View the audit issue reports. - Run remediation. - Run scan configurations. - View the dashboard.- flow\_operator - sn\_change\_write
sn\_itom\_ccg.report\_viewerA report viewer can perform the following actions:- View the audit issue reports. - View the dashboard. 
Property nameDescription
snc_af.log_level

When you enable this property, Cloud Configuration Governance writes the logs to the syslog.The supported logging levels are as follows:

  • DEBUG
  • INFO
  • WARN
  • ERROR
  • OFF

Ensure that the application scope is Global, when you set or clear this property.

Parent Topic:Cloud Configuration Governance reference

Related topics

Assign a role to a user