Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.
Comment: 6.0.0 - release -

The following table describes The following table describes all the privileges in the cloud platform.

...

Section


  Manage virtual ________APPLIBVMCOSTCODEMANAGE_PRICING_CREDENTIALSEVENTLOG_VIEW_ENTERPRISE  XACTION_PLAN_MANAGE 
Home privileges
       

GUI Label _________________

Application Tag

Privilege____________________________________

Cloud Admin

Ent Admin

Ent User

Ent Viewer

Info

List enterprises within scopeENTERPRISE_ENUMERATEThis privilege allows a user to view the list of enterprises within scope and to view statistics for those enterprises

X

    
Allow user to switch enterpriseENTERPRISE_ADMINISTER_ALLThis privilege allows a user to change to another enterprise, in order to administer it, by clicking the switch user button in the Enterprises list

X

    
Display enterprise statisticsENTERPRISE_RESOURCE_SUMMARY_ENTThis privilege allows a user to filter statistics by enterprise to display the resources used by an enterprise in the enterprise resources panel

X

X  X  
Display enterprise limits in statisticsENTERPRISE_SHOW_STATS_LIMITSThis privilege allows a user to view enterprise limits in addition to resources used in the enterprise resources panel if the user has the Display enterprise statistics privilege

X

 

X

X

  
View billsBILLS_VIEWThis privilege allows a user to view bills and related widgets

X

 

X

   
Manage billsBILLS_MANAGEThis privilege allows a user to manage bills

X

 

X

   
Infrastructure
Services XaaS privileges
       

GUI Label _________________

Application Tag

Privilege____________________________________

Cloud Admin

Ent Admin

Ent User

Ent Viewer

Info

Access infrastructure view and private DCsPHYS_DC_ENUMERATEThis privilege allows a user to access the Infrastructure view and list the physical datacenters

X

Use default servicesXAAS_USE_DEFAULTUse default services

X

X

   Display resource usage panelPHYS_DC_RETRIEVE_RESOURCE_USAGE(star)
Manage default servicesXAAS_MANAGE_DEFAULTThis privilege allows a user to view the resource usage panel in the Infrastructure viewmanage default services

X

 

X

  (star) Manage datacenter
PHYS_DC_MANAGEUse enterprise servicesXAAS_USE_ENTERPRISEThis privilege allows a user to manage datacenters (add, edit and delete). Without it, the datacenter's properties will be read onlyuse enterprise services

X

X

X

X

(star)    
View datacenter detailsPHYS_DC_RETRIEVE_DETAILSManage enterprise servicesXAAS_MANAGE_ENTERPRISEThis privilege allows a user to go inside a datacenter and view its details (racks, physical machines, networks, storage and allocation rules)manage enterprise services

X

 

X

  (star) Manage datacenter infrastructure elements
PHYS_DC_ALLOW_MODIFY_SERVERSUse user servicesXAAS_USE_USERThis privilege allows a user to manage infrastructure elements (add, edit and delete racks and physical machines)use user services

X

X

 

X

 

X

(star)  
Manage network elementsuser servicesPHYSXAAS_DC_ALLOW_MODIFY_NETWORKMANAGE_USERThis privilege allows a user to manage network elements (add, edit and delete public networks)user services

X

 

X

 

X

 (star) Manage storage elements
PHYS_DC_ALLOW_MODIFY_STORAGEUse datacenter servicesXAAS_USE_DATACENTERThis privilege allows a user to manage storage elements (add, edit and delete storage devices, pools, tiers and volumes)use datacenter services

X

 

X

 

X

 

X

(star) 
Manage allocation rulesdatacenter servicesPHYSXAAS_DC_ALLOW_MODIFY_ALLOCATIONMANAGE_DATACENTERThis privilege allows a user to manage allocation rules (add and delete rules)datacenter services

X

 

X

  (star) Manage datacenter backup configuration
PHYS_DC_ALLOW_BACKUP_CONFIGUse public cloud region servicesXAAS_USE_PUBLIC_CLOUD_REGIONThis privilege allows a user to manage backup configuration at datacenter leveluse public cloud region services

X

 

X

 

X

 

X

(star) 
Manage devicesMANAGE_DEVICESpublic cloud region servicesXAAS_MANAGE_PUBLIC_CLOUD_REGIONThis privilege allows a user to setup networking devices (Neutron)manage public cloud region services

X

 

X

  (star) Manage public cloud regions
PCR_MANAGEUse location servicesXAAS_USE_LOCATIONThis privilege allows a user to manage public cloud regions (add, edit and delete). Without it, the public cloud region's properties will be read onlyuse location services

X

 

X

 

X

 

X

(star) 
Access infrastructure view and PCRsPCR_ENUMERATEManage location servicesXAAS_MANAGE_LOCATIONThis privilege allows a user to access the Infrastructure view and list the public cloud regionsmanage location services

X

 

X

  (star) View public cloud region details
PCR_RETRIEVE_DETAILSUse virtual datacenter servicesXAAS_USE_VIRTUAL_DATACENTERThis privilege allows a user to go inside a public cloud region and view its details (virtual machines and hardware profiles)use virtual datacenter services

X

 

X

 

X

 

X

(star) 
Manage hardware profile types and familyvirtual datacenter servicesXAAS_MANAGE_HARDWARE_PROFILE_TYPE_AND_FAMILYVIRTUAL_DATACENTERThis privilege allows the a user to manage hardware profile types and family (add, edit and delete)virtual datacenter services

X

 

X

 

X

 (star) View and manage protection managers
MANAGE_DRAAS_CONFIGUse virtual appliance servicesXAAS_USE_VIRTUAL_APPLIANCEThis privilege allows the user to manage protection managers for disaster recovery (create, edit, and delete)a user to use virtual appliance services

X

X

 

X

 

X

(star)  
Virtual datacenters privileges
   
Manage virtual appliance servicesXAAS_MANAGE_VIRTUAL_APPLIANCEThis privilege allows a user to manage virtual appliance services

X

X

X

 (star)  

GUI Label _________________

Application Tag

Privilege____________________________________

Cloud Admin

Ent Admin

Ent User

Ent Viewer

Info

Access virtual datacenters viewVDC_ENUMERATEUse virtual machine servicesXAAS_USE_VIRTUAL_MACHINEThis privilege allows a user to use virtual machine services

X

X

X

X

(star) 
Manage virtual machine servicesXAAS_MANAGE_VIRTUAL_MACHINEThis privilege allows a user to access the Virtual Datacenters viewmanage virtual machine services

X

X

X

X (star) Manage virtual datacenters
VDC_MANAGERun actions on usable servicesXAAS_EXECUTEThis privilege allows a user to manage virtual datacenters (add, edit and delete). Without it, the virtual datacenter details are read onlyrun actions on the services they can use

X

X

 

X

 (star) 
Manage virtual appliancesVDC_MANAGE_VAPPThis privilege allows a user to manage virtual appliances (add, edit and delete)

X

X

X

  
Infrastructure privileges
       

GUI Label _________________

Application Tag

Privilege____________________________________

Cloud Admin

Ent Admin

Ent User

Ent Viewer

Info

Access infrastructure view and private DCsPHYS_DC_ENUMERATEThis privilege allows a user to access the Infrastructure view and list the physical datacenters

X

    
Display resource usage panelPHYS_DC_RETRIEVE_RESOURCE_USAGEThis privilege allows a user to view the resource usage panel in the Infrastructure view

X

    
Manage datacenterPHYS_DC_MANAGEThis privilege allows a user to manage datacenters (add, edit and delete). Without it, the datacenter's properties will be read only

X

    
View datacenter detailsPHYS_DC_RETRIEVE_DETAILSThis privilege allows a user to go inside a datacenter and view its details (racks, physical machines, networks, storage and allocation rules)

X

    
Manage datacenter infrastructure elementsPHYS_DC_ALLOW_MODIFY_SERVERSThis privilege allows a user to manage infrastructure elements (add, edit and delete racks and physical machines)

X

    
Manage network elementsPHYS_DC_ALLOW_MODIFY_NETWORKThis privilege allows a user to manage network elements (add, edit and delete public networks)

X

    
Manage storage elementsPHYS_DC_ALLOW_MODIFY_STORAGEThis privilege allows a user to manage storage elements (add, edit and delete storage devices, pools, tiers and volumes)

X

    
Manage allocation rulesPHYS_DC_ALLOW_MODIFY_ALLOCATIONThis privilege allows a user to manage allocation rules (add and delete rules)

X

    
Manage datacenter backup configurationPHYS_DC_ALLOW_BACKUP_CONFIGThis privilege allows a user to manage backup configuration at datacenter level

X

    
Manage devicesMANAGE_DEVICESThis privilege allows a user to setup networking devices (Neutron)

X

    
Manage public cloud regionsPCR_MANAGEThis privilege allows a user to manage public cloud regions (add, edit and delete). Without it, the public cloud region's properties will be read only

X

    
Access infrastructure view and PCRsPCR_ENUMERATEThis privilege allows a user to access the Infrastructure view and list the public cloud regions

X

    
View public cloud region detailsPCR_RETRIEVE_DETAILSThis privilege allows a user to go inside a public cloud region and view its details (virtual machines and hardware profiles)

X

    
Manage hardware profile types and familyMANAGE_HARDWARE_PROFILE_TYPE_AND_FAMILYThis privilege allows the user to manage hardware profile types and family (add, edit and delete)

X

    
View and manage protection managersMANAGE_DRAAS_CONFIGThis privilege allows the user to manage protection managers for disaster recovery (create, edit, and delete)

X

    
Virtual datacenters privileges
       

GUI Label _________________

Application Tag

Privilege____________________________________

Cloud Admin

Ent Admin

Ent User

Ent Viewer

Info

Access virtual datacenters viewVDC_ENUMERATEThis privilege allows a user to access the Virtual Datacenters view

X

X

X

X

 
Manage virtual datacentersVDC_MANAGEThis privilege allows a user to manage virtual datacenters (add, edit and delete). Without it, the virtual datacenter details are read only

X

X

   
Manage virtual appliancesVDC_MANAGE_VAPPThis privilege allows a user to manage virtual appliances (add, edit and delete)

X

X

X

  
Manage virtual network elementsVDC_MANAGE_NETWORKThis privilege allows a user to manage private and public networks (add, edit and delete)

X

X

   
Manage virtual storage elementsVDC_MANAGE_STORAGEThis privilege allows a user to manage storage volumes (add, edit and delete)

X

X

   
Manage floating IPsMANAGE_FLOATINGIPSThis privilege allows a user to manage floating IPs (add and delete)

X

X

   
Manage firewallsMANAGE_FIREWALLSThis privilege allows a user to manage firewalls (add, edit and delete) for virtual datacenters

X

X

   
Manage load balancersMANAGE_LOADBALANCERSThis privilege allows a user to manage load balancers (add, edit and delete) for virtual datacenters

X

X

   
Manage virtual storage controllerVDC_MANAGE_STORAGE_CONTROLLERThis privilege allows a user to manage the controller of storage volumes

X

X

X

  
Manage public IPsMANAGE_PUBLICIPSThis privilege allows a user to manage public IPs for private virtual datacenters

X

X

X

  
Modify allocation when attaching a diskVDC_MANAGE_STORAGE_DISK_ALLOCATIONThis privilege allows a user to modify the allocation of disks before they are deployed to the hypervisor and specify allocation when attaching a new disk and it is not possible once the VM is deployed (disk already created/copied)

X

 

X

   
Manage NAT IPsMANAGE_NATIPSThis privilege allows a user to manage NAT IPs for private virtual datacenters

X

X

X

  
Manage VPNsMANAGE_VPNThis privilege allows a user to manage VPNs

X

X

   
Manage classic firewallsMANAGE_CLASSIC_FIREWALLSThis privilege allows a user to manage classic firewalls (edit and delete) for devices

X

    
Manage private IP reservationsMANAGE_PRIVATEIP_RESERVATIONThis privilege allows a user to manage private IP reservations

X

    
Manage default virtual datacenter firewallMANAGE_DEFAULT_FIREWALLThis privilege allows a user to define a default virtual datacenter firewall

X

 

X

   
Manage enterprise datacenter default rolesVDC_MANAGE_DEFAULT_ROLEThis privilege allows a user to manage enterprise datacenter default roles (creation/edition)

X

 

X

   
Access public network tabVDC_VIEW_PUBLIC_NETWORKThis privilege gives the user access to public network resources in virtual infrastructure

X

X

X

X

 
Manage public network elementsVDC_MANAGE_PUBLIC_NETWORKThis privilege allows a user to manage public network resources in virtual infrastructure

X

X

X

X

 
Access external network tabVDC_VIEW_EXTERNAL_NETWORKThis privilege gives the user access to external network resources in virtual infrastructure

X

X

X

X

 
Manage external network elementsVDC_MANAGE_EXTERNAL_NETWORKThis privilege allows a user to manage external network resources in virtual infrastructure

X

X

X

X

 
Manage availability setsMANAGE_AVAILABILITY_SETThis privilege allows a user to manage availability sets (add and delete) for virtual datacenters

X

X

   
Assign availability set to VMASSIGN_AVAILABILITY_SETThis privilege allows a user to assign availability sets to virtual machine (create and edit VM)

X

X

   
Manage the bandwidth limit for NATMANAGE_BANDWIDTHLIMIT_NATThis privilege allows a user to manage the bandwidth limit for NAT

X

 

X

   
Manage the bandwidth limit for public IPsMANAGE_BANDWIDTHLIMIT_PUBLICThis privilege allows a user to manage the bandwidth limit for public IPs

X

 

X

   
Manage resource groupsMANAGE_RESOURCE_GROUPThis privilege allows a user to create resource groups

X

X

X

 

X

 
Delete resource groupsDELETE_RESOURCE_GROUPThis privilege allows a user to delete resource groups

X

X

X

 

X

 
Manage global networksMANAGE_GLOBAL_NETWORKThis privilege allows a user to manage global networks

X

X

X

 

X

 
Update private MAC IPUPDATE_MAC_IPThis privilege allows a user to update private MAC IP

X

    
Virtual appliances privileges
       

GUI Label _________________

Application Tag

Privilege____________________________________

Cloud Admin

Ent Admin

Ent User

Ent Viewer

Info

Edit virtual appliance detailsVAPP_CUSTOMISE_SETTINGSThis privilege allows a user to edit virtual appliance details (name, CPUs, etc.), go inside virtual appliances and view their details

X

X

X

  
Deploy and undeploy virtual appliancesVAPP_DEPLOY_UNDEPLOYThis privilege allows a user to deploy/undeploy virtual appliances

X

X

X

  
Perform virtual machine actionsVAPP_

Cloud Admin

Ent Admin

Ent User

Ent Viewer

Info

Edit virtual appliance detailsVAPP_CUSTOMISE_SETTINGSPERFORM_ACTIONSThis privilege allows a user to perform virtual machine actions (power on/off, pause, reboot, remote access)

X

X

X

  
Manage persistent templatesVAPP_CREATE_STATEFULThis privilege allows a user to edit virtual appliance details (name, CPUs, etc.), go inside virtual appliances and view their detailsmanage persistent virtual machine templates (create in VApp; create, edit and delete in virtual datacenter)

X

X

X

  Deploy
and undeploy virtual appliancesCreate instanceVAPP_DEPLOYCREATE_UNDEPLOYINSTANCEThis privilege allows a user to deploy/undeploy virtual appliancescreate instance templates of a virtual machine within a virtual appliance

X

X

X

  
Perform Manage virtual machine actionshard disksVAPPMANAGE_PERFORMHARD_ACTIONSDISKSThis privilege allows a user to perform access the virtual machine actions (power on/off, pause, reboot, remote accesshard disk tab and manage hard disks (add and delete)

X

X

X   
Manage persistent templateslayersVAPP_CREATEMANAGE_STATEFULLAYERSThis privilege allows a user to manage persistent virtual machine templates anti-affinity layers in virtual appliances (create in VApp; create, edit and delete in virtual datacenterlayers)

X

X

X

  Create instance
Manage virtual machine backup configurationVAPP_CREATEMANAGE_INSTANCEBACKUPThis privilege allows a user to create instance templates of a virtual machine within a virtual applianceaccess the backup configuration at virtual machine level and set the backup type and contents

X

X

X   
Manage virtual machine hard disksMANAGE_HARD_DISKSbackup scheduleVAPP_DEFINE_BACKUP_INFOThis privilege allows a user to access the virtual machine hard disk tab and manage hard disks (add and delete)specify an additional option for backup configuration by setting backup dates and times

X

X

   
Manage layersworkflow tasksVAPPWORKFLOW_MANAGE_LAYERSOVERRIDEThis privilege allows a user to manage anti-affinity layers in virtual appliances (create, edit and delete layers)start or cancel queued tasks if workflow is enabled

X

X

X   
Manage virtual machine backup configurationDelete unknown virtual machinesVAPP_DELETE_MANAGEUNKNOWN_BACKUPVMThis privilege allows a user to access the backup configuration at virtual machine level and set the backup type and contentsdelete virtual machines in unknown state

X

 

X

   Manage virtual machine backup schedule
VAPP_DEFINE_BACKUP_INFOAssign firewalls to virtual machinesASSIGN_FIREWALLSThis privilege allows a user to specify an additional option for backup configuration by setting backup dates and timesassign already created firewalls to virtual machines

X

 

X

   
Manage workflow tasksWORKFLOW_OVERRIDEAccess persistent templates viewVAPP_STATEFUL_VIEWThis privilege allows a user to start or cancel queued tasks if workflow is enabledaccess the persistent virtual machine templates view

X

X

 

X

  Delete
unknown virtual machinesManage virtual machine backup disksVAPP_DELETEMANAGE_UNKNOWNBACKUP_VMDISKSThis privilege allows a user to delete virtual machines in unknown statespecify disks and disk backup types (snapshot and complete)

X

    
Assign firewalls to virtual machinesload balancersASSIGN_FIREWALLSLOADBALANCERSThis privilege allows a user to assign already created firewalls to virtual machinesload balancers

X

X

   
Access persistent templates viewVAPP_STATEFUL_VIEWManage virtual machine metricsUSERS_ENABLE_DISABLE_VM_METRICSThis privilege allows a user to access the persistent virtual machine templates viewactivate monitoring of virtual machines

X

X

X

  
Manage virtual machine backup disksVAPP_MANAGE_BACKUP_DISKSAccess metricsUSERS_SHOW_METRICSThis privilege allows a user to specify disks and disk backup types (snapshot and complete)manage monitoring

X

X

 

X

 

X

 
Assign load balancersASSIGN_LOADBALANCERSRestore virtual machine backupsVAPP_RESTORE_BACKUPThis privilege allows a user to assign load balancersrestore virtual machine backups

X

X

   
Manage virtual machine metricsUSERS_ENABLE_DISABLE_VM_METRICSProtect/unprotect virtual machinesVM_PROTECT_ACTIONThis privilege allows a user to activate monitoring of virtual machinesprotect/unprotect a virtual machine

X

X

X   
Access metricsUSERS_SHOW_METRICSConsume virtual appliance specsCONSUME_VAPP_SPECThis privilege allows a user to manage monitoringconsume virtual appliance specs

X

X

X X  
Restore Override virtual machine backupsconstraintsVAPPVM_EXCEED_RESTORECPU_BACKUPRAMThis privilege allows a user to restore virtual machine backupsallows a user to modify virtual machine CPU and RAM to values outside the maximum and minimum values defined in the virtual machine template

X

X

   
Protect/unprotect virtual machinesEdit virtual machine detailsVM_PROTECTEDIT_CPU_ACTIONRAMThis privilege allows a user to protect/unprotect a edit virtual machine details (CPU and RAM)

X

 

X

 

X

 

X

 
Consume virtual appliance specsCONSUME_VAPP_SPECRetrieve default template credentialsVM_CHECK_USER_PASSWORDThis privilege allows a user to consume virtual appliance specsretrieve the default user and password of a template

X

 

X

   Override virtual machine constraints
Relocate a VM to a compatible hostVM_EXCEED_CPU_RAMRELOCATEThis privilege allows a user to modify virtual machine CPU and RAM to values outside the maximum and minimum values defined in the virtual machine templaterelocate a VM to a compatible host

X

    Edit virtual machine details
VM_EDIT_CPU_RAMManage workflow for scaling groupsSCALING_GROUP_MANAGE_WORKFLOWThis privilege allows a user to edit virtual machine details (CPU and RAM)enable or disable workflow for scaling groups.

X

X

X   Retrieve default template credentials
Attach NICs in restricted networks to VMsVM_CHECKATTACH_USER_PASSWORDNICThis privilege allows a user to retrieve the default user and password of a templateattach NICs in restricted networks

X

    Relocate a VM to a compatible host
Detach NICs in restricted networks from VMsVM_RELOCATEDETACH_NICThis privilege allows a user to relocate a VM to a compatible hostdetach NICs in restricted networks

X

    
Manage workflow for scaling groupsMANAGE_SCALING_GROUP_MANAGE_WORKFLOWGROUPSThis privilege allows a user to enable or disable workflow for manage scaling groups .(add, edit and delete)

X

 

X

   
Attach NICs in restricted networks to VMsVM_ATTACH_NICManage virtual machine ISO disksMANAGE_ISOThis privilege allows a user to attach NICs in restricted networksmanage ISO disks in virtual machines (add, edit and delete)

X

 

X

   
Detach NICs in restricted networks from Manage restricted VApps and VMsVMVAPP_DETACHRESTRICTED_NICMANAGEThis privilege allows a user to detach NICs in restricted networksmanage restricted VApps and VMs

X

    
Manage scaling groupsMANAGE_SCALING_GROUPSView restricted VApps and VMsVAPP_RESTRICTED_VIEWThis privilege allows a user to manage scaling groups (add, edit and delete)view restricted VApps and VMs

X

    Manage virtual machine ISO disks
MANAGE_ISORestrict VMVM_RESTRICTThis privilege allows a user to manage ISO disks in virtual machines (add, edit and delete)restrict VMs

X

    
Manage restricted VApps and Move VMsVAPPMANAGE_RESTRICTEDMOVE_MANAGEVMThis privilege allows a user to manage restricted VApps and VMsmove VMs between VDCs

X

 

X

   View restricted VApps and VMs
VAPP_RESTRICTED_VIEWRetrieve virtual machine initial passwordVM_RETRIEVE_INITIAL_PASSWORDThis privilege allows a user to view restricted VApps and VMsretrieve the initial password of a virtual machine

X

 

X

   Restrict VM
Assign public IPs to VMsVM_ASSIGN_PUBLIC_RESTRICTIPThis privilege allows a user to assign public IPs to restrict VMs

X

 

X

 

X

 

X

 
Move Assign external IPs to VMsMANAGEVM_ASSIGN_MOVEEXTERNAL_VMIPThis privilege allows a user to move VMs between VDCsassign external IPs to VMs

X

 

X

 

X

 

X

 
Retrieve virtual machine initial Reset VM guest passwordVM_RETRIEVERESET_INITIALGUEST_PASSWORDThis privilege allows a user to retrieve reset the initial password of a virtual machine

X

 

X

   Assign public IPs to VMs
Manage VM disaster recovery protectionVM_ASSIGNMANAGE_PUBLIC_IPDRAASThis privilege allows a user to assign public IPs to enable or disable disaster recovery protection for VMs

X

X

   
Manage VM snapshotsMANAGE_SNAPSHOTThis privilege allows a user to create, delete, and revert VM snapshots

X

X

  (star) 
Assign external IPs to VMsVM_ASSIGN_EXTERNAL_IPView enterprise snapshots listVIEW_ENTERPRISE_SNAPSHOTS_LISTThis privilege allows a user to assign external IPs to VMsview the enterprise’s VM snapshots list

X

X

X X (star) 
Reset VM guest passwordVM_RESET_GUEST_PASSWORDManage snapshot auto delete functionUSERS_ENABLE_DISABLE_SNAPSHOT_AUTODELETEThis privilege allows a user to reset the initial password of a virtual machineenable snapshot auto deletion

X

 

X

  (star) 
Manage VM disaster recovery protectionVMsnapshot auto delete expire dateUSERS_MANAGE_DRAASSNAPSHOT_AUTODELETEThis privilege allows a user to enable or disable disaster recovery protection for VMsspecify the snapshot auto deletion expire date

X

X

   (star)
Apps library
Catalogue privileges
       (warning)

GUI Label _________________

Application Tag

Privilege____________________________________

Cloud Admin

Ent Admin

Ent User

Ent Viewer

Info

Access Apps library Catalogue viewAPPLIB_VIEWThis privilege allows a user to access the Appliance library view

X

X

   (warning)
Manage VM templates from Apps libraryCatalogueAPPLIB_ALLOW_MODIFYThis privilege allows a user to view the Appliance library contents, modify virtual machine templates (download from remote repositories, edit and delete) and promote instances

X

X

  (warning) 
Upload virtual machine templateAPPLIB_UPLOAD_IMAGEThis privilege allows a user to upload virtual machine templates from a local file into the Apps libraryCatalogue

X

X

  (warning) 
Manage repositoryAPPLIB_MANAGE_REPOSITORYThis privilege allows a user to manage repositories (add and delete repositories)

X

X

   
Download virtual machine templateAPPLIB_DOWNLOAD_IMAGEThis privilege allows a user to download virtual machine templates from the Appliance library to their hard disk

X

X

   
Manage VM template categoriesAPPLIB_MANAGE_CATEGORIESThis privilege allows a user to manage categories of virtual machine templates that belong to their enterprise (add and delete)

X

X

   
Manage VM template global categoriesAPPLIB_MANAGE_GLOBAL_CATEGORIESThis privilege allows a user to manage categories of virtual machine templates that are common and available to all enterprises (add and delete)

X

    
Display datacenter capacity and free spaceAPPLIB_SHOW_DC_CAPACITYThis privilege allows a user to view the capacity and remaining space of a datacenter

X

    
Export a virtual machine template to datacenterAPPLIB_EXPORT_TO_PRIVATEThis privilege allows a user to export a virtual machine template to another private datacenter.

X

 

X

   
Export a virtual machine template to public cloud regionAPPLIB_EXPORT_TO_PUBLICThis privilege allows a user to export a virtual machine template to another public cloud region.

X

 

X

   
Manage virtual appliance specsMANAGE_VAPP_SPECThis privilege allows a user to manage virtual appliance specs (add and edit)

X

 

X

   
Download VM templates from remote repositoryAPPLIB_DOWNLOAD_FROM_REMOTE_REPOSITORYThis privilege allows a user to download virtual machine templates from remote repositories

X

X

   
Specify allocation of template disksAPPLIB_DISK_ALLOCATIONThis privilege allows a user to specify the allocation of template disks

X

 

X

   
Accept virtual machine template terms of useAPPLIB_ACCEPT_IMAGE_TERMSThis privilege allows a user to accept virtual machine template terms of use

X

X

   
Users privileges
       

GUI Label _________________

Application Tag

Privilege____________________________________

Cloud Admin

Ent Admin

Ent User

Ent Viewer

Info

Access Users viewUSERS_VIEWThis privilege allows a user to access the Users view

X

X

   
Manage enterprisesUSERS_MANAGE_ENTERPRISEThis privilege allows a user to manage enterprises (add, edit and delete)

X

 

X

   
Manage usersUSERS_MANAGE_USERSThis privilege allows a user to manage users (add, edit and delete)

X

X

   
Manage users of all enterprisesUSERS_MANAGE_OTHER_ENTERPRISESThis privilege allows a user to manage users of more than one enterprise and move users between enterprises. Without it, the Enterprise list is not shown in Users view

X

 

X

   
No VDC restrictionUSERS_PROHIBIT_VDC_RESTRICTIONNormally a user within an enterprise can have a list of VDCs assigned and these will be the only VDCs that they will be able to see. Setting this privilege exempts a user from having their VDC list restricted and they will be able to see all VDCs in their enterprise

X

X

   
Access Roles and Scope screensUSERS_VIEW_PRIVILEGESThis privilege allows a user to access the Roles and Scopes screen

X

    
Manage rolesUSERS_MANAGE_ROLESThis privilege allows a user to manage roles (add, edit and delete roles; modify privileges assigned to roles; assign scopes to roles)

X

    
Associate role with enterpriseUSERS_MANAGE_ROLES_OTHER_ENTERPRISESThis privilege allows a user to associate a role with any enterprise

X

    
Manage global roleUSERS_MANAGE_SYSTEM_ROLESThis privilege allows a user to manage roles that are common and available to all enterprises, rather than being constrained to a single enterprise

X

    
Display connected usersUSERS_ENUMERATE_CONNECTEDThis privilege allows a user to display connected users

X

    
Define enterprise managerUSERS_DEFINE_AS_MANAGERThis privilege defines a user as an enterprise manager. Enterprise managers receive physical machine notification emails

X

X

   
Manage Chef enterprisesUSERS_MANAGE_CHEF_ENTERPRISEThis privilege allows a user to enable and manage Chef for enterprises

X

 

X

   
Manage scopesUSERS_MANAGE_SCOPESThis privilege allows a user to manage scopes (add, edit and delete scopes)

X

    
Manage enterprise reserved serversUSERS_MANAGE_RESERVED_MACHINESThis privilege allows a user to manage reserved servers at enterprise level

X

    
Modify enterprise themeUSERS_MANAGE_ENTERPRISE_BRANDINGThis privilege allows a user to manage enterprise branding (select a specific theme for an enterprise)

X

    
Allow user to push own metricsUSERS_PUSH_METRICSThis privilege allows a user to push their own metrics

X

X

X

  
Manage provider credentialsUSERS_MANAGE_CREDENTIALSThis privilege allows a user to manage provider credentials (add and delete)

X

 

X

   
Manage user applicationsUSERS_MANAGE_APPLICATIONSThis privilege allows a user to manage applications (add and delete)

X

 

X

   
Manage reseller enterprisesENTERPRISE_MANAGE_RESELLERThis privilege allows a user to manage resellers

X

    
Manage key node enterprisesENTERPRISE_MANAGE_KEY_NODEThis privilege allows a user to manage aggregation nodes

X

    
Manage enterprise propertiesENTERPRISE_MANAGE_PROPERTIESThis privilege allows a user to manage enterprise properties

X

 

X

   
Manage user allowed CIDRsMANAGE_USER_CIDR_ACCESSThis privilege allows a user to manage allowed CIDRs for users

X

 

X

   
Manage virtual datacenter rolesUSERS_MANAGE_VDC_ROLESThis privilege allows a user to manage virtual datacenter roles (select default role, define user exceptions)

X

 

X

   
Access budgets sectionBUDGET_VIEWThis privilege allows a user to access the budgets section

X

 

X

   
Manage budgetsBUDGET_MANAGEThis privilege allows a user to manage budgets (create, edit and delete)

X

 

X

   
Manage role and scope allowed CIDRsMANAGE_ROLE_AND_SCOPE_CIDR_ACCESSThis privilege allows a user to manage allowed CIDRs for roles and scopes

X

 

X

   
Manage mail server for resellerENTERPRISE_MANAGE_SERVER_MAILThis privilege allows a user to manage server mail for resellers

X

    
Manage user creation in providerENTERPRISE_CREATE_USER_IN_PROVIDERThis privilege allows a user to manage user creation in a provider (in credentials list)

X

X

   
Access user metadata (dashboards)USERS_VIEW_USERS_METADATAThis privilege allows a user to access users metadata (dashboards)

X

 

X

   
Manage user metadata (dashboards)USERS_MANAGE_USERS_METADATAThis privilege allows a user to manage users metadata (dashboards)

X

 

X

   
Access enterprise metadata (dashboards)USERS_VIEW_ENTERPRISE_METADATAThis privilege allows a user to access enterprise metadata (dashboards)

X

 

X

   
Manage enterprise metadata (dashboards)USERS_MANAGE_ENTERPRISE_METADATAThis privilege allows a user to manage enterprise metadata (dashboards)

X

 

X

   
System configuration
Pricing privileges
       

GUI Label _________________

Application Tag

Privilege____________________________________

Cloud Admin

Ent Admin

Ent User

Ent Viewer

Info

Add a cost code when editing a VM templateAPPLIB_VM_

Cloud Admin

Ent Admin

Ent User

Ent Viewer

Info

Access Configuration viewSYSCONFIGCOST_CODEThis privilege allows a user to select a cost code when editing a virtual machine template

X

X

   
Access Pricing viewPRICING_VIEWThis privilege allows a user to access the Configuration Pricing view

X

 

X

   Modify configuration data
SYSCONFIG_ALLOW_MODIFYManage pricingPRICING_MANAGEThis privilege allows a user to edit all system-wide configuration settingsmanage pricing components (add, edit and delete currencies, pricing models and cost codes)

X

 

X

   
Allow access to reportsSYSCONFIG_SHOW_REPORTSManage pricing credentialsMANAGE_PRICING_CREDENTIALSThis privilege allows a user to access external reports by clicking the Reports button. The button will only be visible if the 'Reports URL' system property is not empty (Configuration -> System Properties -> General -> Reports URL)manage pricing credentials

X

 

X

   
Manage default dashboardsSYSCONFIG_MANAGE_DEFAULT_DASHBOARDSGenerate billingRUN_BILLINGThis privilege allows a user to manage default dashboardsgenerate billings

X

 

X

   
Pricing
Events privileges
       

GUI Label _________________

Application Tag

Privilege______________

Application Tag

Privilege______________________

Cloud Admin

Ent Admin

Ent User

Ent Viewer

Info

Add a cost code when editing a VM template

_

_

_

This privilege allows a user to select a cost code when editing a virtual machine template

X

    
Access Pricing viewPRICING_VIEWThis privilege allows a user to access the Pricing view

X

    
Manage pricingPRICING_MANAGEThis privilege allows a user to manage pricing components (add, edit and delete currencies, pricing models and cost codes)

X

    
Manage pricing credentials

___________

Cloud Admin

Ent Admin

Ent User

Ent Viewer

Info

Display all events for current enterpriseEVENTLOG_VIEW_ENTERPRISEThis privilege allows a user to manage pricing credentialsto display all events related to the current enterprise

X

X

 

X

 

X

 
Generate billingRUN_BILLINGDisplay all eventsEVENTLOG_VIEW_ALLThis privilege allows a user to generate billingsdisplay all events

X

X    
Events
Control privileges
       

GUI Label _________________

Application Tag

Privilege____________________________________

Cloud Admin

Ent Admin

Ent User

Ent Viewer

Info

Display all events for current enterprise

_______

Cloud Admin

Ent Admin

Ent User

Ent Viewer

Info

Access alarms sectionUSERS_VIEW_ALARMSThis privilege allows a user to access the alarms sections

X

X

   
Manage alarmsUSERS_MANAGE_ALARMSThis privilege allows a user to manage alarms (create, edit and delete)

X

X

   
Access alerts sectionUSERS_VIEW_ALERTSThis privilege allows a user to display all events related to the current enterpriseaccess the alerts sections

X

X

X X  Display all events
EVENTLOG_VIEW_ALLManage alertsUSERS_MANAGE_ALERTSThis privilege allows a user to display all eventsmanage alerts (create, edit and delete)

X

 

X

   
Control privileges
   
Access action plans, schedule and alert trigger tabsACTION_PLAN_VIEWThis privilege allows a user to access the Action plans, the Schedule and Alert trigger tabs

X

X

   

GUI Label _________________

Application Tag

Privilege____________________________________

Cloud Admin

Ent Admin

Ent User

Ent Viewer

Info

Access alarms sectionUSERS_VIEW_ALARMSThis privilege allows a user to access the alarms sections

X

Manage action plans and task schedulesACTION_PLAN_MANAGEThis privilege allows a user to manage action plans, schedule and alert triggers

X

X

   
View enterprise hierarchyENTERPRISE_VIEW_HIERARCHYThis privilege allows the user to display the enterprises in a hierarchy

X

X

   
Access resource tags tabs and resource tags management viewTAGS_VIEWThis privilege allows the user to display the Tags tab of resources and the Tags management view

X

X

   
Manage alarmsUSERStags for compatible resourcesTAGS_MANAGE_ALARMSThis privilege allows a the user to manage alarms (createtags for compatible resources (add, edit, synchronize and delete)

X

 

X

   
Access alerts sectionUSERStag policies viewTAG_POLICIES_VIEW_ALERTSThis privilege allows a the user to access the alerts sectionsdisplay tag policis view

X

 

X

   (star)
Manage alertsUSERStag policiesTAG_POLICIES_MANAGE_ALERTSThis privilege allows a the user to manage alerts (create, edit and delete)tag policies (add, edit and delete)

X

X

  (star) 
System configuration privileges
      
Access action plans, schedule and alert trigger tabsACTION_PLAN_VIEWThis privilege allows a user to access the Action plans, the Schedule and Alert trigger tabs

X

    
Manage action plans and task schedules 

GUI Label _________________

Application Tag

Privilege____________________________________

Cloud Admin

Ent Admin

Ent User

Ent Viewer

Info

Access Configuration viewSYSCONFIG_VIEWThis privilege allows a user to manage action plans, schedule and alert triggersaccess the Configuration view

X

    
View enterprise hierarchyENTERPRISE_VIEW_HIERARCHYModify configuration dataSYSCONFIG_ALLOW_MODIFYThis privilege allows the a user to display the enterprises in a hierarchyedit all system-wide configuration settings

X

    Access resource tags tabs and resource tags management view
TAGS_VIEWAllow access to reportsSYSCONFIG_SHOW_REPORTSThis privilege allows the a user to display the Tags tab of resources and the Tags management view

X

access external reports by clicking the Reports button. The button will only be visible if the 'Reports URL' system property is not empty (Configuration -> System Properties -> General -> Reports URL)

X

X

   
Manage tags for compatible resourcesTAGSdefault dashboardsSYSCONFIG_MANAGE_DEFAULT_DASHBOARDSThis privilege allows the a user to manage tags for compatible resources (add, edit, synchronize and delete)default dashboards

X

    



Key to Info Column of Privileges Table

...