Rewind Access Fabric lets you scope a person's access to specific backup configurations instead of your whole organization. This article explains what the Backup Config Admin and Backup Config Viewer roles do, how they compare to Rewind's other roles, and what to consider before you assign them. You can assign backup configuration roles for Jira and GitHub.
Covered in this article:
- Overview
- Key benefits
- Backup configuration roles
- How these roles compare to other Rewind roles
- How to assign a backup configuration role
- Choosing a role based on Atlassian access
- Limitations
- Related articles
Overview
Rewind Access Fabric lets you assign a role to specific backup configurations rather than to your whole organization. A backup configuration covers a set of Jira projects or GitHub repositories. When you assign someone to one, they can work with the backups for those projects or repositories, and nothing else.
You can assign one person to several backup configurations. Their role stays the same across all of them.
Despite their names, the Backup Config Admin and Backup Config Viewer roles control more than configuration settings. They determine which backup data a person can see.
What Rewind Access Fabric is designed for
- Giving a team or department lead control over their own backups, without exposing the rest of your organization's data
- Giving auditors and stakeholders visibility into a specific set of projects or repositories
- Giving someone day-to-day backup responsibilities without granting organization-wide access
Key benefits
- Limit what each person sees to the projects or repositories they're responsible for.
- Delegate backup management to team leads without granting organization-wide access.
- Give auditors read-only visibility into a specific set of backups.
Backup configuration roles
Backup Configuration Admin
A Backup Config Admin has full control of the backup configurations they're assigned to. They can edit the configuration, add and remove projects or repositories, run a manual backup, and view and restore the data those configurations cover.
They can't see or change any other backup configuration, and they can't perform organization-wide actions such as managing users, billing, or integrations.
Backup Configuration Viewer
A Backup Config Viewer has read-only access to the backup configurations they're assigned to. They can see the configuration, view its backup history, and browse the data it covers. They can't change anything, run a backup, or restore.
Use this role for auditors and stakeholders who need visibility into a specific set of projects or repositories.
How these roles compare to other Rewind roles
Both roles are narrower in scope than Organization Owner, Organization Admin, and Integration Admin. Anyone holding one of those roles can already do everything a Backup Config Admin or Backup Config Viewer can, within their own scope.
| Role | Scope | Can manage users and billing | Can see other backup configurations |
|---|---|---|---|
| Organization Owner | Whole organization | Yes | Yes |
| Organization Admin | Whole organization | Yes | Yes |
| Integration Admin | Assigned integrations | No | Yes, within assigned integrations |
| Backup Config Admin | Assigned backup configurations | No | No |
| Backup Config Viewer | Assigned backup configurations, read-only | No | No |
| Read-Only | Assigned integrations, read-only | No | Yes, within assigned integrations |
How to assign a backup configuration role
- Log in to Rewind at app.rewind.com.
- Open Account Settings from the left menu, then select Team Collaboration.
- Click Invite New Member, or click an existing member's name to change their role.
- Choose Backup Config Admin or Backup Config Viewer.
- Select which backup configurations the person should have access to.
- Click Save, or Invite user for a new member.
New members get an email invitation. Their access starts once they accept it.
Choosing a role based on Atlassian access
Rewind doesn't read or sync your Atlassian permissions — you assign Rewind roles yourself. Use the table below as a starting point for deciding which Rewind role fits someone, based on the access they already have in Jira.
| Atlassian role | Atlassian scope | Suggested Rewind role |
|---|---|---|
| Organization admin (primary) | Whole tenant | Organization Owner |
| Organization admin (additional) | Tenant, delegated | Organization Admin |
| Site admin | One site | Organization Admin |
| Jira admin (app admin) | One product | Integration Admin for all of Jira, or Backup Config Admin to limit them to specific backup configurations |
| Project admin | One project | Backup Config Admin, scoped to the backup configuration that covers that project |
| User access admin | App access | Organization Admin |
| Billing admin | Billing | Organization Admin |
| Auditor or read-only stakeholder | Visibility | Backup Config Viewer for specific backup configurations, or Read-Only for a whole integration |
Confluence Space admins aren't included in this table because backup configuration roles can't be assigned for Confluence. To give someone access to Confluence backups, use an organization-wide or integration-wide role.
Limitations
-
Available for Jira and GitHub
It's not possible to assign backup configuration roles for other integrations at this time. Use an organization-wide or integration-wide role instead. Support for Confluence is planned. -
A user has one role
You can't give someone Backup Config Admin on one configuration and Backup Config Viewer on another. Choose the role first, then choose which backup configurations it applies to. -
Restores are limited to individual items
A Backup Config Admin can perform an item-level restore within the backup configurations they're assigned to. -
Not yet available for organizations that use SSO
Rewind doesn't support the ability to assign Backup Config Admin or Backup Config Viewer through SSO yet, so you can't assign them in an organization that uses SSO. -
Up to 10 backup configurations appear when you assign a role
If your organization needs more than 10, please contact Rewind Support.
Related articles
- Guide to User Roles and Permissions in Rewind (Role-Based Access Control) — Full breakdown of what every Rewind role can do.
- How to Assign or Change User Roles — Steps for assigning any Rewind role, including the organization-wide roles.
- How to create and update Backup Policies for Jira — How to create the backup configurations you assign these roles to.
- Configuring Backup Policies for GitHub repositories — How to create the backup configurations you assign these roles to.
Need help?
If you have questions or need assistance, contact help@rewind.com or submit a request.