> For the complete documentation index, see [llms.txt](https://docs.eseye.com/llms.txt). Markdown versions of documentation pages are available by appending `.md` to page URLs; this page is available as [Markdown](https://docs.eseye.com/infinity/account-and-support/user-types-and-access-models.md).

# User types and access models in the Eseye Infinity Management Portal

## Overview

The Eseye Infinity Management Portal uses a **role‑based access control (RBAC)** model to manage how users and systems interact with the platform. This ensures that access is **least‑privilege**, auditable, and appropriate to the purpose of each user.

Infinity supports multiple user types to accommodate both human access and system‑to‑system integrations.

## Supported User Types

### 1. Named (Human) Users

Named users represent individual people accessing the Infinity portal via the web interface.

Typical use cases:

* Operations and support teams
* Finance and reporting users
* Administrators managing portfolios and users

User accounts are:

* Authenticated using username/password (and MFA where enabled)
* Assigned roles and permissions defining allowed actions
* Access scoped to their portfolios and Child Portfolios

### 2. Service Accounts (API Access)

Service accounts are designed for access to Infinity APIs.

Typical use cases:

* Automated provisioning workflows
* Integration with customer platforms
* Reporting or monitoring systems

Characteristics:

* No interactive login
* Authenticated using access keys and secrets
* Restricted permissions

Service accounts are created via the same User Accounts area of the portal, using the Service Accounts option.

This is all self-service and can be created by you or any team member who needs it.

Once logged in, select the Portfolio option on the left-hand toolbar (white option on a blue background).

Then select User Accounts, as shown below.

![](https://3553167287-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FXGhN6gzyULR0TDJArp4a%2Fuploads%2Fgit-blob-c79742ad87623b68b8bfd9a93aa600edc17e4c4c%2Fuser-types-and-access-models-01.png?alt=media)

Select the Service Accounts tab (the third tab), as shown below.

![](https://3553167287-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FXGhN6gzyULR0TDJArp4a%2Fuploads%2Fgit-blob-9c39dea5cb4d6ffddf845ab2807710412ed8ceaf%2Fuser-types-and-access-models-02.png?alt=media)

On the right-hand side, select Actions and then Add New User.

![](https://3553167287-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FXGhN6gzyULR0TDJArp4a%2Fuploads%2Fgit-blob-e4f7cb5f4be7696fd3d8e9329c75f1ba221df6b4%2Fuser-types-and-access-models-03.png?alt=media)

This opens the form to create a service account for the API.

![](https://3553167287-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FXGhN6gzyULR0TDJArp4a%2Fuploads%2Fgit-blob-fa9f7309f54903b3090e3cf6dbc114204ab6dd74%2Fuser-types-and-access-models-04.png?alt=media)

Enter the user's email address and their first and last name.

{% hint style="info" %}
Make sure you select **Level 1 (Intermediate)** as the Access Role, as shown above.
{% endhint %}

When you select Save, the Client ID is created and the secret is displayed on screen.

{% hint style="warning" %}
You must save the secret now. If you lose or forget it, there is no way to view it again.
{% endhint %}

If the secret is lost, delete the service account and create a new one, which generates a new Client ID and secret. This also means that if someone leaves, deleting their service account keeps your SIM estate secure.

### 3. SFTP Users (File‑Based Integration Access)

SFTP users are accounts used for secure file‑based data exchange with Eseye and the Infinity platform.

Typical use cases:

* REF file delivery
* Uploading IMSI data, including keys

Characteristics:

* Authentication via SFTP credentials (not portal login)
* Access limited to designated directories and functions
* Managed centrally
* Subject to the same audit and lifecycle controls as other users

## How to Create an SFTP User in Infinity

{% hint style="warning" %}
Only users with appropriate administrative permissions (for example, Portfolio Admin or equivalent) can create SFTP users.
{% endhint %}

1. **Log in to the Infinity Management Portal**\
   Access the portal using an administrator account.
2. **Navigate to User Management**\
   From the left-hand menu, select Portfolio → User Accounts.

   ![](https://3553167287-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FXGhN6gzyULR0TDJArp4a%2Fuploads%2Fgit-blob-cd37351c04201e629f0f5ca7a9ffc02dbe8932b0%2Fuser-types-and-access-models-05.png?alt=media)
3. **Select the SFTP Accounts section**\
   The User Accounts area supports different account types, including SFTP Accounts, which are separate from named users and service accounts.

   ![](https://3553167287-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FXGhN6gzyULR0TDJArp4a%2Fuploads%2Fgit-blob-235bfcb724fa262e170c2a5974de5ea012a70575%2Fuser-types-and-access-models-06.png?alt=media)
4. **Add a new SFTP user**\
   Select Add New User.

   ![](https://3553167287-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FXGhN6gzyULR0TDJArp4a%2Fuploads%2Fgit-blob-8adcac2404306e0d26a1af9ebe7d1a1ef73b79b8%2Fuser-types-and-access-models-07.png?alt=media)

   This opens the New SFTP Accounts form.

   ![](https://3553167287-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FXGhN6gzyULR0TDJArp4a%2Fuploads%2Fgit-blob-ebf81397bb1188606b5c912bb991cbccdb9fdc21%2Fuser-types-and-access-models-08.png?alt=media)
5. **Enter the account details**

   * **Username**: you use this to identify yourself in the SFTP client.
   * **Email Address**: associates the SFTP account with an email address, normally that of the person creating the account.
   * **Friendly Name**: any text that makes it easy to identify what this SFTP user was created for.
   * **SSH Public Key**: use an SSH key generator to create a public and private key pair for this SFTP user, then paste the public key here.

   ![](https://3553167287-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FXGhN6gzyULR0TDJArp4a%2Fuploads%2Fgit-blob-fca2743e52ec4308e243aca67a804e511edbe8d6%2Fuser-types-and-access-models-09.png?alt=media)

   Only select **Customer Suspend** if you want the account to be suspended for later use.


---

# Agent Instructions
This documentation is published with GitBook. GitBook is the documentation platform designed so that both humans and AI agents can read, navigate, and reason over technical content effectively. Learn more at gitbook.com.

## Querying This Documentation
If you need additional information that is not directly available in this page, you can query the documentation dynamically by asking a question.

Perform an HTTP GET request on the current page URL with the `ask` query parameter, and the optional `goal` query parameter:

```
GET https://docs.eseye.com/infinity/account-and-support/user-types-and-access-models.md?ask=<question>&goal=<endgoal>
```

`ask` is the immediate question: it should be specific, self-contained, and written in natural language.
`goal` is optional and describes the broader end goal you are ultimately trying to accomplish on behalf of the user. GitBook uses it to tailor the answer towards what is most useful for that goal.

The response will contain a direct answer to the question and relevant excerpts and sources from the documentation.

Use this mechanism when the answer is not explicitly present in the current page, you need clarification or additional context, or you want to retrieve related documentation sections.
