For the complete documentation index, see llms.txt. This page is also available as Markdown.

Roles

A role defines a set of permissions that can be assigned to a subject in a scope, determining which actions the subject is allowed to perform on NVIDIA Run:ai entities such as projects, workloads, and users. Each permission represents an allowed action including view, create, edit, and delete on a specific entity.

Related permissions are grouped into permission sets, which bundle actions for a particular functional area (for example, managing workloads). These permission sets act as reusable building blocks that simplify role definition and ensure consistent access control across the platform.

NVIDIA Run:ai provides predefined roles for common use cases and allows administrators to create custom roles to meet specific organizational requirements. For a reference of all available permissions, including how API permission names map to their user interface display names, see Permissions.

Roles Table

The Roles table can be found under Access in the NVIDIA Run:ai platform.

The Roles table displays a list of roles available to users in the NVIDIA Run:ai platform. Both predefined and custom roles will be displayed in the table.

The Roles table consists of the following columns:

Column
Description

Role

The name of the role

Created by

The name of the role creator

Creation time

The timestamp when the role was created

Customizing the Table View

  • Filter - Click ADD FILTER, select the column to filter by, and enter the filter values

  • Search - Click SEARCH and type the value to search by

  • Sort - Click each column header to sort by

  • Column selection - Click COLUMNS and select the columns to display in the table

  • Download table - Click MORE and then Click Download as CSV. Export to CSV is limited to 20,000 rows.

Reviewing a Role

  1. To review a role click the role name on the table

  2. In the role form review the following:

    • Role name The name of the role

    • Entity A system-managed object that can be viewed, edited, created or deleted by a user based on their assigned role and scope

    • Actions The actions that the role assignee is authorized to perform for each entity

      • View - If checked, an assigned user with this role can view instances of this type of entity within their defined scope

      • Edit - If checked, an assigned user with this role can change the settings of an instance of this type of entity within their defined scope

      • Create - If checked, an assigned user with this role can create new instances of this type of entity within their defined scope

      • Delete - If checked, an assigned user with this role can delete instances of this type of entity within their defined scope

Roles in NVIDIA Run:ai

NVIDIA Run:ai supports the following roles and their permissions. Under each role is a detailed list of the actions that the role assignee is authorized to perform for each entity.

Note

Legacy roles are deprecated and will be removed in a future release. Review the new predefined roles to determine whether they meet your requirements, or create a custom role using the API.

  • L1 researcher, L2 researcher, ML engineer → consider using AI practitioner

  • Data source administrator, Data volume administrator → consider using Data & storage administrator

  • Research manager → consider using Project administrator

AI practitioner
Compute resource administrator Legacy
Credentials administrator Legacy
Data and storage administrator
Data source administrator Legacy
Data volume administrator Legacy
Department administrator
Department administrator (Legacy) Legacy
Department viewer
Editor
Environment administrator Legacy
L1 researcher Legacy
L2 researcher Legacy
ML engineer Legacy
Project administrator
Research manager Legacy
System administrator
Template administrator Legacy