---
sourceDocument: Australia ServiceNow AI Platform Capabilities
sourceDocumentLink: https://servicenow-prod.fluidtopics.net/r/de-DE/servicenow-platform

 Release :

    - australia

ft:locale :

    - de-DE

ft:publication_title :

    - Australia ServiceNow AI Platform Capabilities

ft:clusterId :

    - platcap

bundleId :

    - platcap

workflow :

    - Platform


---

# Roles

# Hermes Messaging Service roles {#ariaid-title1}

* Freigeben Version: Australia
* 
* Aktualisiert 12. März 2026
* 
* ![](https://www.servicenow.com/docs/portal-asset/ico-clock) 1 Minute Lesedauer

Hermes Messaging Service is installed with these roles.
To learn more about managing subscriptions, see [Managing per-user subscriptions in Subscription Management](https://www.servicenow.com/docs/access?context=managing-user-subscriptions-v2&version=australia&pubname=australia-platform-administration&ft:locale=en-US) and contact your account representative.
**Zugehörige Konzepte**   

* [Hermes Messaging Service domain separation](https://servicenow-prod.fluidtopics.net/r1o7QfkLKdkll31xY_1NOA "Domain separation is supported for the Hermes Messaging Service. Domain separation enables you to separate data, processes, and administrative tasks into logical groupings called domains. You can control several aspects of this separation, including which users can see and access data.")  
**Zugehörige Verweise**   

* [Hermes Messaging Service components](https://servicenow-prod.fluidtopics.net/EzXzyCgBqWjagCEq27Be7A "The Hermes Messaging Service architecture is built on the following components.")
* [Hermes Messaging Service security model](https://servicenow-prod.fluidtopics.net/1K9uMyfqAqOZhGFdkIWg8g "The Hermes Messaging Service security model relies on the following capabilities.")
* [Hermes Messaging Service system properties](https://servicenow-prod.fluidtopics.net/PETSHluNdPulNs0zObO38A "These system properties control the behavior of the Hermes Messaging Service.")

## Hermes Messaging Service viewer \[hermes_viewer\] {#ariaid-title2}

Enables users to view topics and namespaces in Hermes

### Contains Roles {#hermes-messaging-service-roles-4__section-feature-role-contains-roles}

List of roles contained within the role.

None.

### Groups {#hermes-messaging-service-roles-4__section-feature-role-groups}

List of groups this role is assigned to by default.

None.

### Special considerations {#hermes-messaging-service-roles-4__section-feature-role-considerations}

None.

## Hermes Messaging Service administrator \[hermes_admin\] {#ariaid-title3}

Enables users to access the Hermes Messaging Service Topic Inspector.

### Contains Roles {#hermes-messaging-service-roles-1__section-feature-role-contains-roles}

List of roles contained within the role.

* kafka_namespace_admin
* hermes_viewer
{#hermes-messaging-service-roles-1__ul_edx_z3p_ghc}

### Groups {#hermes-messaging-service-roles-1__section-feature-role-groups}

List of groups this role is assigned to by default.

None.

### Special considerations {#hermes-messaging-service-roles-1__section-feature-role-considerations}

Hinweis:  
Avoid granting an admin role when more specialized roles are available.

## Kafka administrator \[kafka_admin\] {#ariaid-title4}

Enables users to manage the integration with Apache Kafka, including topics and settings related to Kafka subscriptions.

### Contains Roles {#hermes-messaging-service-roles-2__section-feature-role-contains-roles}

List of roles contained within the role.

* hermes_viewer
* stream_connect_alert_viewer
* view_changer
* fd_read_flows
{#hermes-messaging-service-roles-2__ul_znk_fjp_ghc}

### Groups {#hermes-messaging-service-roles-2__section-feature-role-groups}

List of groups this role is assigned to by default.

None.

### Special considerations {#hermes-messaging-service-roles-2__section-feature-role-considerations}

Hinweis:  
Avoid granting an admin role when more specialized roles are available.

## Kafka namespace administrator \[kafka_namespace_admin\] {#ariaid-title5}

Enables users to manage Kafka namespace definitions.

### Contains Roles {#hermes-messaging-service-roles-3__section-feature-role-contains-roles}

List of roles contained within the role: kafka_admin.

### Groups {#hermes-messaging-service-roles-3__section-feature-role-groups}

List of groups this role is assigned to by default.

None.

### Special considerations {#hermes-messaging-service-roles-3__section-feature-role-considerations}

Stream Connect administrators with the kafka_namespace_admin role can view message data across different domains.

For example, in a Managed Service Provider (MSP) instance with Kafka integrations in multiple domains, managing namespace definitions properly is important to maintain separation between domains, so don't grant this role to
administrators within a single domain.

