Defining FRP permission sets for McAfee ePO users In the McAfee ePO server, administrator rights management determines the actions that McAfee ePO users can perform while administrating FRP. A permission set is a group of permissions that can be granted to users or Active Directory (AD) groups by assigning it to those users’ accounts. One or more permission sets can be assigned to users who are not global administrators. (Global administrators have all permissions to all products and features.) User accounts and their associated permission sets define the tasks that the users can perform. This allows you to restrict specific users or groups from misusing FRP features. Create permission sets for user accountsIf you are a global administrator, you can create permission sets for user accounts. Edit the FRP policy permissionsYou can define the permissions for configuring FRP policy settings. Edit the FRP key server permissionsYou can define permission sets for creating and managing FRP keys. Edit recovery permission set An administrator must have FRP Recovery permissions to recover end users' FRP key authentication and removable media credentials.