October 15, 2025
We have updated permission categories. The Identity Management and Application Management scopes now support CRUD operations along with No Access permission. This helps associate Admins with custom roles and have more granular permissions for Users and Applications instead of bundling everything together.
Known Issues
We are aware of the following issues in the current RBAC implementation and are working diligently to resolve them in a future release.
- Inconsistent Enforcement of the Associations Scope: In a small number of scenarios, users will full-access encounter denials and users with view-only access are allowed to perform some actions.
- Mixed Notification Messages: In certain scenarios, conflicting status notifications following an administrative action are shown.
September 17, 2025
- The following sections/scopes have been renamed:
- Policy Management > Access Management
- System Management > Devices
- Authentication Policies > Conditional Access Policies and IP Lists. We have updated the description as well.
- Identity Management will host user related scopes only.
- Identity Management and Directory and Groups Management are available as separate scopes.
- Directory Management and Group Management scopes are under Directory and Groups Management permissions.
- SaaS Applications and Asset Management scopes are under SaaS and Asset Management permissions.
- RADIUS Authentication has moved under Access Management.
- Application Templates are now included in the Applications scope.
- Existing APIs related to the User Portal are included in the Multi-Factor Authentication scope.
- All operations related to the User Portal are included in the Multi-Factor Authentication scope.
- JumpCloud Protect is not included in any scope.
Back to Top