Controlling User Resources - Hitachi VSP F1500 User And Reference Manual

Command control interface guide
Hide thumbs Also See for VSP F1500:
Table of Contents

Advertisement

Controlling user resources

CCI verifies the user who executes the command has been authenticated
already. After that, CCI obtains the access authority of the resource groups
that are configured on the user roles, and then compares the access authority
of the user and the specified resources.
Checking resource authorities
If the access is not permitted by comparing the access authorities of the
resource groups configured on the user roles and the specified resource, CCI
rejects the command with an error code "EX_EGPERM". If the resource
groups are defined among the large storage systems, the specified resource
is compared with the resource specified by obtaining the access authority
configured to each large storage system.
Target commands
CCI checks resource authorities on the following commands that use
command devices.
raidcom commands (commands for setting configurations)
horctakeover, horctakeoff, paircurchk, paircreate, pairsplit, pairresync,
pairvolchk, pairevtwait, pairsyncwait, pairmon
raidscan (-find verify, -find inst, -find sync except for [d]), pairdisplay,
raidar, raidqry (except for -l and -r)
raidvchkset, raidvchkscan, raidvchkdsp
Relation between user authentication and resource groups
In user authentication mode, CCI verifies the access authority of the target
resource based on the user authentication and the role of it. Also, on the user
authentication unnecessary mode and the undefined resource groups, CCI
checks the access authorities shown in the following table.
Table 3-2 Relations between resource groups and command devices
Resources
Undefined
resource
Defined
resource
3-10
pairXX
Not
authenticated
2
user
Permitted
3
4
EX_EGPERM
CCI functions
Command Control Interface User and Reference Guide
Commands
1
Authenticated
authenticated
user
Permitted by the
EX_EPPERM
authority of
resource ID 0
Permitted by the
EX_EGPERM
authority of the
EX_EPPERM
target resource
ID
raidcom
Not
Authenticated
user
2
user
Permitted by the
4
authority of
resource ID 0
Permitted by the
4
authority of the
target resource
ID

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents