# Set User Privileges for Monitoring Service

Users need appropriate privileges to access, create, and modify Monitoring Service. Without necessary privileges, users have a read-only access and cannot provision changes. You can grant appropriate privileges via the **User Manager**.

{% hint style="warning" %}
**Warning:** User privileges set using the IONOS Cloud API or the DCD apply to pipeline access only, not to Grafana access.
{% endhint %}

To allow users to access, create, and modify the Monitoting Service, follow these steps:

1\. In the DCD, go to **Menu** > **Management** > **Users & Groups**. 2. Select the **Groups** tab in the **User Manager** window. 3. Select the appropriate group to assign relevant privileges. 4. In the **Privileges** tab, select **Access and manage Monitoring** to allow the associated group members to access and manage Monitoring Service.

![Grant privileges to access and manage the Monitoring Service](https://1737632334-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2F-MifAzdGvKLDTtvJP8sm%2Fuploads%2Fgit-blob-4e50cd9bf9280c6b2cdb192527d6badd006be19e%2Fset-user-privilege-monitoring-service.png?alt=media)

{% hint style="info" %}
**Note:** You can remove the privileges from the group by clearing **Access and manage Monitoring**.
{% endhint %}

{% hint style="success" %}
**Result:** Appropriate privilege is granted to the group and the users in the respective group.
{% endhint %}

## Create and manage sub-users

For improved user management and delegation, you can establish sub-users and grant them the necessary permissions to use the Monitoring Service. Sub-users can be given varying levels of access for their segment of the monitoring pipeline by the primary account owners. Only the pipelines that the primary account owner has assigned to sub-users are visible to them and can be managed, but they cannot access the primary account or pipelines created by other sub-users.

To create sub-users, follow these steps:

1\. In the DCD, go to **Menu** > **Management** > **Users & Groups**. 2. Select the **Groups** tab in the **User Manager** window. 3. Select the appropriate group to assign relevant privileges. 4. In the **Members** tab, click **+ Add User** and select a user(s) from the list.

To delete an associated sub-user, click **Remove User**.

![Create sub-users](https://1737632334-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2F-MifAzdGvKLDTtvJP8sm%2Fuploads%2Fgit-blob-090fb93bfec334fdbaf78adef8a9e52ccb80221e%2Fcreate-sub-user.png?alt=media)

{% hint style="success" %}
**Result:** A sub-user(s) is created.
{% endhint %}
