Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.
Table of Contents


Create a read only user for the whole platform

To create a read only user for the whole platform, assign the ENTERPRISE_VIEWER role to the user. This user will only be able to view the platform, they will not be able to create and deploy VMs and so on.

By default, the user should be able to display virtual datacenters, open virtual appliances, display VM configuration (including the Backup status tab) and VM states, and access VM monitoring.

...

Make a virtual datacenter read only

...

The Roles tab in the virtual datacenter will only display if the user has the Manage roles privilege. By default, this privilege is only assigned to the CLOUD_ADMIN role.

...

Make a

...

location’s virtual datacenters read only by default for an enterprise

To make a provider's virtual datacenters read only for an enterprise, edit the enterprise, and on the Allowed datacenters popup Datacenters tab, edit the location (region . Assign or datacenter). On the Defaults tab, for the VDC default role, select your viewer role. The platform will assign this role to all new virtual datacenters that you create in the region. An administrator may later change this role as required.  The Default roles tab will only display when editing Allowed datacenters a location when the user has the Manage VDC default roles privilege. By default this privilege is only assigned to the CLOUD_ADMIN role.

...

To make a provider's virtual datacenters read only for an enterprise, edit the enterprise, and on go to Datacenters. On the Allowed datacenters panel, edit the provider and go to Defaults. Assign For the VDC default role, select the viewer role

The platform will copy this role to all regions in the provider. An administrator may later change this role as required at the regional location or VDC level.

...

Customizing enterprise viewer privileges

Here are some notes about how the privileges work for the ENTERPRISE_VIEWER role.

  • The Display enterprise statistics privilege (ENTERPRISE_RESOURCE_SUMMARY_ENT) lets a viewer list VMs in their enterprise without the Edit virtual appliance details privilege (VAPP_CUSTOMISE_SETTINGS)

  • The Access virtual datacenters view privilege (VDC_ENUMERATE) lets a user list and open virtual appliances.