cancel
Showing results for 
Search instead for 
Did you mean: 

Error message when deleting "user roles"

yuliang11_
Occasional Contributor

Error message when deleting "user roles"

Hi all,

I'm a complete beginner. I'm trying to delete the default user roles ,however i'm getting the following message

Unable to delete role: Users is used by 1 policy: Sensor Rules/Sensor Event/Any IDP Signal

Why do i get a feeling that i've deleted something from IPS Smiley Sad

Anyway for me to delete the role ?

thanks!

6 REPLIES 6
Jickfoo_
Super Contributor

Re: Error message when deleting "user roles"

I guess you could Disassociate the policy 'Any IDP Signal' from role Users, then try again. By default that policy is associated to All Users.

Thats done under Configuration, Sensors, Sensor Event Policies.

Why delete group 'users' though ? Just dont map anyone to it.

yuliang11_
Occasional Contributor

Re: Error message when deleting "user roles"

thanks for the reply. i've tried to assign to "all roles" but it's not working

1. can i delete 'any idp signal' ?

2. well sometimes u meet really fussy customer Smiley Happy


@jickfoo wrote:

I guess you could Disassociate the policy 'Any IDP Signal' from role Users, then try again. By default that policy is associated to All Users.

Thats done under Configuration, Sensors, Sensor Event Policies.

Why delete group 'users' though ? Just dont map anyone to it.


Jickfoo_
Super Contributor

Re: Error message when deleting "user roles"

In role mapping, map the policy to everyone except for Users group.. See attached jpg.

I'm still not 100% you'll be able to delete role users but give it a shot.

yuliang11_
Occasional Contributor

Re: Error message when deleting "user roles"



thank you very much Smiley Very Happy
JNCIE-Harry_
Not applicable

Re: Error message when deleting "user roles"

I am getting the same error on a created user group. I've tried the solution above but still get the same error. I'm running 6.3R1-1 (build 13563) if that makes a difference. Thanks.
muttbarker_
Valued Contributor

Re: Error message when deleting "user roles"

Harry - I am running the same build - I have never attempted to delete the "users" role as it is system created and I am not sure you can. However you can delete any other realm / role / resource you create. When deleting you must remove all dependencies 1st. IE - you can't delete a realm if it is in a sign-in policy and you can't delete a role if it is used in a realm.

If you are getting any errors trying to delete a role you created you need to determine what dependency is preventing the deletion and remove it.

BUT! Deletion works fine on your version.