Link asset to Data Access

Note Roles in Data Access are not the same as global or resource roles.

As the owner of an asset, you can link your asset to a Data Access role. This allows users to request access to the underlying data in the asset. When a user requests access to an asset that is linked to an existing role, depending on the status of the access request, they are granted access on the data objects that are already included in the role.

Depending on how access requests are configured, you can also create a new role directly from your asset.

Prerequisites

  • Access requests are configured for the asset type.
  • You have a resource role with the Asset > Data > Manage Data Access resource permission on the asset, for example, the Owner resource role. To verify this, on the Responsibilities tab of the asset page, ensure that your name appears in the Owner section.

Steps

  1. Open the asset page.
  2. Click Actions > Link to Data Access.
  3. In the Link to Data Access dialog box, select one of the following options.
    FieldDescription
    Link to an existing role

    Links your asset to an existing role in Data Access.

    If you select this option:

    1. Click Continue.
    2. Select the role to which you want to link your asset. To enforce the principle of least privilege, avoid linking the asset to an overly broad role that might contain unrelated data objects.
    3. Click Submit.
      Your asset is linked to the selected role.
    Create a new role

    Creates and populates a new role in Data Access to link to your asset.

    Note 
    • The availability of this option depends on how access requests are configured for the asset type. Specifically, it depends on whether relation types are selected in the configuration.
    • For this option to work, the parent data source in Data Access must be linked to its corresponding System asset in Data Catalog. Specifically, your asset's related data assets must be mapped to the corresponding data objects in Data Access.

    If you select this option:

    1. Select the Grant access to this asset directly option, and then click Continue.
    2. On the Create role page, review or edit the auto-populated data objects, and then click Create.
      The new role is created and your asset is linked to it. If the role contains data objects that you do not own, an access request is generated for the respective data owners. The data objects are added to the new role after the access request is implemented.

What's next

Request access to asset data

Related topics