Server Application Manual
Overview
Use this manual to configure packages, manage clients, and deploy software updates with the Update Service Server Management interface. By default, access is not limited to administrators. For more information, see Access and permissions.
Access and permissions
The Server Management interface doesn't use per-screen roles. Instead, two settings on the Settings screen control access for the entire interface:
- Require Authentication on Server — When this setting is off, anyone who can reach the server can use the interface. When it's on, users must sign in. Any authenticated user can still use all screens and actions, including create, edit, and delete actions.
- Require Administrator Role on Server — This setting is available only when Require Authentication on Server is enabled. When it's on, only users in the Administrator role can view or change data across the interface. When it's off, any authenticated user has full access.
In this manual, "administrators" refers to the users who are authorized to use the Server Management interface under the current authentication configuration.
Some API endpoints are shared by the browser UI and the Update Service client agent, such as file downloads and install result reporting. These endpoints follow a related but separate policy so that client agents aren't blocked by interactive sign-in requirements.