Configuring Interact

The following sections describe the predefined user roles that you can use to set up Interact and Tanium Data Service users. To review specific permissions for each role, see User role requirements.

For more information about assigning user roles, see Tanium Core Platform User Guide: Manage role assignments for a user.

On installation, Interact creates a Tanium Data user to automatically manage the service account for Tanium Data Service. Do not edit or delete the Tanium Data user.

Set up Interact users

Interact Power User

Assign the Interact Power User role to users who ask questions, manage content in the Interact content sets, and deploy actions through Interact.

Interact Basic User

Assign the Interact Basic User role to users who ask questions and manage content in the Interact content sets.

Interact Read-Only User

Assign the Interact Read-Only User role to users who ask questions and view content in the Interact content sets.

Interact Show

Assign the Interact Show role to users who view content in the Interact workbench. This includes users who need to view question results and saved question results in Interact.

Set up Tanium Data Service users

Data Collection Administrator

Assign the Data Collection Administrator role to users who manage the sensors from which to collect data for Tanium Data Service.
This role can perform the following tasks:

  • Purge data for specific sensors
  • Register, unregister, enable, and disable sensors for collection
  • Configure data collection settings (unrestricted access)

Data Collection Operator

Assign the Data Collection Operator role to users who manage the sensors from which to collect data for Tanium Data Service.
This role can perform the following tasks:

Assign the Data Collection Operator role to users who manage the sensors from which to collect data for Tanium Data Service.
This role can perform the following tasks:

  • Purge data for specific sensors
  • Register, unregister, enable, and disable sensors for collection
  • Configure data collection settings

Do not assign the Tanium Data Service Account, Tanium Data Service Account - All Content Sets, or Data Collection Service Account roles to users. These roles are for internal purposes only.