I was trying to see how this was handled because on 8.1 I had allowed public access internally to the status pages for ease in troubleshooting without having to login. (The gateway lives in an isolated environment with no external access to the server from the internet.) I was looking at how I could do the same with 8.3 and it looks like this has all changed. Now there’s Gateway Read Access, which would be the closest thing (I wish the Gateway Access covered the Diagnostics category so logs and performance could be viewed without a login). Once I open up read access to Public, I can see all the settings, etc, and it even lets me uncheck boxes and try to change settings, but if you click save, they don’t actually save. I feel like all the web components should be disabled if only read access is available, but more granular settings would be ideal.
What if there was a separate “Diagnostics Access” security setting that allowed seeing devices, databases, etc in addition to the diagnostics category, but the only option would be to see status details for devices and databases for example, but not see their settings (which would show things like IPs, usernames, etc).
End goal as stated previously would be to view diagnostics from a public role/level if I want ease of troubleshooting but keep security for viewing and editing settings and other gateway pages as they are right now. (Maybe this is just changing what can be viewed from the Access security setting (or having an option to allow what’s viewable from that access security setting - but forcing a read-only permission on it). I like to set the home page redirect URLto the performance page, but to do that with 8.3 I have to grant read access to the gateway, which allows more visibility than I like from a security standpoint.
Also, better help/description like what’s in the manual on the page itself would help, as the description on the gateway isn’t helpful at all.