Skip to content

Custom Roles

Custom roles allow Org Admins to overlay a specific set of ABAC policies to a base role (RBAC Role.

Create New Role

Perform the below steps to create a new custom role with ABAC policies:

  • Login to the console and navigate to System → Attribute Based Access → Custom Roles. Custom Roles page appears
  • Click New Role

Remove EKS Cluster

  • Provide a Name
  • Select the Base Role, either Namespace Admin or Namespace Read Only


In Release 1.26, introduced support for the base roles Namespace Admin and Namespace Read Only. More base roles in the pipeline for the upcoming releases

  • Click Add Policy to select the required policy and its version. Multiple policy selection is allowed
  • Click Save Changes

Remove EKS Cluster

Once the details are saved, the policy is applied to the selected roles and listed as shown below. You can edit the details or delete the custom role if required using the respective icons

Remove EKS Cluster

On successful custom role creation, now admins can assign the roles to the required users or groups