Guides & How-TosRADA Group Mapping
ApplicationAccess LevelRADA GroupComments
Used as owner of other groupsCo-owner of all RADA GroupsSSFFCT_ace-adminsThis allows users to manage all group which it co-owns. This also allows admin privileges to Terraform Cloud and Grafana
ACE OpenSearchOpenSearch UsersSSFFCT_GCORE-ES-ECDI-PROD-USERSFor access to Infra OS Cluster to search logs
ACE OpenSearchOpenSearch AdminsSSFFCT_GCORE-ES-ECDI-PROD-ADMINSFor admin access to Infra OS Cluster to manage sources and other admin configurations
DDC OpenSearch Dev EnvDDC Opensearch Admins - DEVGLOFCT_ddc-dev-opensearch-adminsFor admin access to DDC Opensearch Cluster in the Dev AWS account to manage sources and other admin configurations
DDC OpenSearch Dev EnvDDC Opensearch Users - DEVGLOFCT_ddc-dev-opensearch-userFor DDC users to access to DDC Opensearch Cluster to view logs from the environment in the Dev AWS Account
DDC OpenSearch Prod EnvDDC Opensearch Admins - PRODGLOFCT_ddc-prod-opensearch-adminsFor admin access to DDC Opensearch Cluster in the Prod AWS account to manage sources and other admin configurations
DDC OpenSearch Prod EnvDDC Opensearch Users - PRODGLOFCT_ddc-prod-opensearch-userFor DDC users to access to DDC Opensearch Cluster to view logs from the environment in the Prod AWS Account
DDC Dev AWS AccountDDC Dev AWS Account AdminsGLOAWSACEDDCDV_ContributorsFor administrative console access to the Dev DDC AWS Account
DDC Dev AWS AccountDDC Dev AWS Account Read OnlyGLOAWSACEDDCDV_ReaderFor read only console access to the Dev DDC AWS Account. This includes security auditor access and access to read cloudwatch logs
DDC Dev AWS AccountDDC Dev AWS Account Power UserGLOAWSACEDDCDV_PowerUsersThis allows the same permissions as the power user role in AWS, but is limited to only the eu-west-1 region.
DDC Prod AWS AccountDDC Prod AWS Account AdminsGLOAWSACEDDCPRD_ContributorsFor admin console access to the Prod DDC AWS Account
DDC Prod AWS AccountDDC Prod AWS Account Read OnlyGLOAWSACEDDCPRD_ReadersFor read only console access to the Prod DDC AWS Account. This includes security auditor access and access to read cloudwatch logs
DDC Prod AWS AccountDDC Prod AWS Account Power UserGLOAWSACEDDCPRD_PowerUsersThis allows the same permissions as the power user role in AWS, but is limited to only the eu-west-1 region.
V7 ApplicationGroup is used to control access to the V7 Workspace for the ECDi ACE AI Team. This group is requestable in CIDMgene-gred-ecdi-ace-ai-v7wsThe V7 Workspace is called gene gred ecdi ace ai
V7 ApplicationGroup is used to control access to the V7 Parent Workspace. This group is NOT requestable in CIDMgenentech-parent-v7wsThe V7 Workspace is called GenentechParent