Manage access to custom dashboards - Learn more about managing access to custom dashboards in Cortex XDR. - Administrator Guide - Cortex XSIAM - Cortex XDR - Cortex - Security Operations

Cortex XDR 5.x Documentation

Product
Cortex XDR
License
XDR + Cloud
Creation date
2025-07-13
Last date published
2026-06-04
Category
Administrator Guide
Abstract

Learn more about managing access to custom dashboards in Cortex XDR.

Review the following:

The Dashboard Manager serves as the central repository for your visualizations. By using object-level access, you can ensure that custom (user-defined) dashboards, such as those used for sensitive executive reporting or specialized department views, are only accessible to authorized users and user groups. The permissions assigned to your role, combined with the ownership of specific objects, directly determine the content available to you; you can only access dashboards where you are the Owner, dashboards that have been explicitly shared with you (or your user group), or dashboards marked as Public.

Prerequisite

  • Configure tenant-level settings: An administrator must first establish the sharing framework under SettingsConfigurationsAccess ManagementObjects.

    The configuration of these settings defines the authorized sharing workflows for for all custom objects, including dashboards:

    • Enable "Owners can Share objects they created": Grants owners the ability to share dashboards with specific users and user groups. In the Dashboard Manager, this enables the Share option.

    • Disable "Owners can Share objects they created": Restricts owners to managing only General access (Public vs. Restricted). In the Dashboard Manager, this replaces the Share option with the Manage Access option.

    For more information on configuring tenant-level settings, see Manage access to objects.

  • Define Scope-Based Access Control (SBAC): While object-level sharing grants access to the dashboard's layout and configuration, users must also have the appropriate SBAC permissions to view the actual data populated within the widgets. If a user has access to a shared dashboard but lacks the required data scope for the underlying datasets, the dashboard will load, but the widgets may appear empty or display an error. For more information on defining SBAC, see Manage user scope.