feat(admin): user roles are split by source
Created by: Kuliak
- user-detail page splits his roles by source (directly assigned or obtained as a member of authorized group)
- tabs added to change what source we want to see
- authorized-group-based roles cannot be managed, only viewed