Privilege Concept With Role-Based Access Control - Fujitsu Siemens Computers SX series User Manual

Sx150 business server
Table of Contents

Advertisement

The X2000 user interface

8.3 Privilege concept with Role-Based Access Control

The PRIMEPOWER ServerView Suite can be used with a standard user ID of the
SX servers such as root, sxadmin, bs2admin or soladmin. However, a special ID without
particular SCS rights can also be set up for this purpose. The procedure for setting up such
a user ID is described in the
page
53. In all these cases the PRIMEPOWER ServerView Suite runs internally with root
rights.
As of V2.2B the PRIMEPOWER ServerView Suite supports differentiated assignment of
rights for such user IDs. Differentiated assignment of rights is controlled in the Role Based
Access Control (RBAC) feature which is integrated in Solaris.
This means that the user is only granted a restricted view (or the complete view)
of a defined set of PRIMEPOWER ServerView applications and/or
of a defined set of nodes within the administration domain.
Applications which are not accessible for users are grayed out in PRIMEPOWER
ServerView. Nodes which are not accessible to the user are indicated by the "no entry" icon
in the hierarchy browser (see the figure below).
Figure 71: Presentation of non-accessible nodes in the hierarchy browser of PRIMEPOWER ServerView
In the following cases a user ID automatically obtains the full access rights to all available
applications of the PRIMEPOWER ServerView Suite and to all nodes of the administration
domain when it is created:
Use of PRIMEPOWER ServerView Suite < V2.2B
When the user ID is created the RBAC feature is not activated in PRIMEPOWER
ServerView.
U41272-J-Z385-3-76
Privilege concept with Role-Based Access Control
section "Administration of PRIMEPOWER ServerView" on
201

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents