# Work with permissions

Modify role settings to control access to different areas of the application.

You can view and modify all [permissions](https://doc.ibexa.co/projects/userguide/en/latest/permission_management/permission_system/index.md) by clicking **Roles** in the **Admin** panel.

## Create a new role

1. Go to **Admin** -> **Roles** and click **Create**.
2. Provide a name and click **Save and close** to see a list of policies that the role has.
3. Click **+ Add**, select a policy from the list and click **Save and close**.

You then may have an option to add limitations to the policy. The available limitations depend on the chosen policy. You can then return to a list of policies by clicking **Save and close** or **Discard**.

![Details of a role](https://doc.ibexa.co/projects/userguide/en/latest/permission_management/img/role_details.png "Details of a role")

## Assign a role to users

1. Go to **Admin** -> **Roles** and select a role.
2. Go to the **Assignments** tab and click **Assign to Users/Groups**.
3. Choose users and/or groups to be assigned to this role.
4. In the **Limitatons** area, select additional limitations if necessary.
5. To discard your changes and close the window, click **Discard**.
6. To save your changes, click **Save and close**.

![Users assigned to role](https://doc.ibexa.co/projects/userguide/en/latest/permission_management/img/users_assigned.png "Users assigned to role")

> **Note: Note**
>
> A user or user group may be assigned multiple roles.

For a list of available permissions and limitations, see [Permissions](https://doc.ibexa.co/en/5.0/permissions/permissions/).
