Restrict Access to Call Recordings

Updated: 06/03/2024

Objective

Restrict a user's access to call recordings to one or multiple sites by creating role assignments.

Applies To

  • Admin Console
  • Roles
  • Recordings

Procedure

Set up an assignment that gives the users access to the Recordings page in Admin Console. 
  1. Navigate to Roles & Permissions → Roles page and create new role with 8x8 Admin Console application and at least Call Recordings permissions. Alternatively, an existing role could be edited to grant that permission.
    clipboard_e3091b4542815a14558fd5ac9c4dc95ac.png
  2. Navigate to Roles & Permissions → Assignments page and create new assignment for the selected user with the role at the previous step and the desired site scope/scopes (or Company). 
    clipboard_ef451beba447b981fd4bed4da098c8b13.png
Set up an assignment that restricts the user's access based on site scope/scopes (or Company if no site scope filtering is needed) to the call recordings data.
  1. Navigate to Roles & Permissions → Assignments page and create new assignment for the selected user with the out-of-the-box Storage Admin role and the desired site scope/scopes (or Company).
    clipboard_e25723ffbe41541781b258d606afd82dd.png
  2. If the user needs access to view call recordings, but not be able to delete them, a new role should be created. Navigate to Roles & Permissions → Roles page copy the Storage Admin role and deselect delete permissions ("Delete Objects" and "Bulk Delete"). Create a new user assignment with this copied role. 
    clipboard_e753c070f9a850dc7590098a86c29387d.png
    clipboard_eb0412dc9ac3667edbb27798fe802e7c0.png
An alternative to copying the out-of-the-box Storage Admin role is to create a new role altogether.
  1. Navigate to Roles & Permissions Roles and create a new role. Select Call recordings & Storage as application. Assign permissions as desired.
    clipboard_e6762e2e58f8511fdca1f372510d0cb17.png
  2. Perform step 2 from above, and instead of Storage Admin role, use the newly created role name.