> For the complete documentation index, see [llms.txt](https://cortex-docs.paloaltonetworks.com/llms.txt). Markdown versions of documentation pages are available by appending `.md` to page URLs; this page is available as [Markdown](https://cortex-docs.paloaltonetworks.com/xsoar-6-administrator-guide/6.14/onboard-cortex-xsoar/users-and-roles/users-and-roles-overview.md).

# Users and Roles Overview

Cortex XSOAR uses role-based access control (RBAC) for controlling user access. RBAC helps manage access to Cortex XSOAR components, so that users, based on their roles, are granted minimal access required to accomplish their tasks.

You can manage the following settings/roles in the **USERS AND ROLES** tab:

* View and manage different roles and access permissions in the **Roles** tab. You can add as many roles as required and change their permission levels, as described in [Roles in Cortex XSOAR](/xsoar-6-administrator-guide/6.14/onboard-cortex-xsoar/users-and-roles/roles-in-cortex-xsoar.md).
* View and manage different users in the **Users** tab. You can view the user’s details such as name, email address, last log in, whether they have been locked out, and so on. You can also manage the user’s password, unlock their account, disable, enable, and remove their account.
* Invite users and manage invitations, as described in [User Invitations](/xsoar-6-administrator-guide/6.14/onboard-cortex-xsoar/users-and-roles/user-management.md#UUID-4715a678-5f1c-6b95-a6d2-9ea342eddeec). After the user has accepted the invitation you can manage their role in Cortex XSOAR.
* Assign roles to commands at the integration instance level. This means if you have multiple instances of the same integration, you can assign different roles (permission levels) for the same command in each instance. For more information, see [Integration Permissions](/xsoar-6-administrator-guide/6.14/onboard-cortex-xsoar/users-and-roles/integration-permissions.md).
* View details of actions taken in Cortex XSOAR in the **Audit trail**.
* Set a password policy, as described in [Password Policy](/xsoar-6-administrator-guide/6.14/onboard-cortex-xsoar/users-and-roles/password-policy.md).

You can also authenticate users with [Active Directory](https://xsoar.pan.dev/docs/reference/integrations/active-directory-authentication) or with [SAML 2.0](/xsoar-6-administrator-guide/6.14/onboard-cortex-xsoar/users-and-roles/authenticate-users-with-saml-2.0.md).

{% hint style="info" %}

### Note

For license purposes only Cortex XSOAR includes the following users:

* Audit users
* Full users

For more information about these users, see [Licenses](/xsoar-6-administrator-guide/6.14/learn-about-cortex-xsoar/get-started-in-cortex-xsoar/licenses.md).
{% endhint %}


---

# Agent Instructions
This documentation is published with GitBook. GitBook is the documentation platform designed so that both humans and AI agents can read, navigate, and reason over technical content effectively. Learn more at gitbook.com.

## Querying This Documentation
If you need additional information that is not directly available in this page, you can query the documentation dynamically by asking a question.

Perform an HTTP GET request on the current page URL with the `ask` query parameter, and the optional `goal` query parameter:

```
GET https://cortex-docs.paloaltonetworks.com/xsoar-6-administrator-guide/6.14/onboard-cortex-xsoar/users-and-roles/users-and-roles-overview.md?ask=<question>&goal=<endgoal>
```

`ask` is the immediate question: it should be specific, self-contained, and written in natural language.
`goal` is optional and describes the broader end goal you are ultimately trying to accomplish on behalf of the user. GitBook uses it to tailor the answer towards what is most useful for that goal.

The response will contain a direct answer to the question and relevant excerpts and sources from the documentation.

Use this mechanism when the answer is not explicitly present in the current page, you need clarification or additional context, or you want to retrieve related documentation sections.
