Create a read only user for the whole platform
To create a read only user for the whole platform, assign the ENTERPRISE_VIEWER
role to the user. This user will only be able to view the platform, they will not be able to create and deploy VMs and so on.
Make a virtual datacenter read only
To make a virtual datacenter read only for standard users, assign the ENTERPRISE_VIEWER
role to the virtual datacenter. This role will only apply to users that do not have the No VDC restriction
privilege. So a user with an ENTERPRISE_ADMIN
role would be able to deploy VMs as usual.
The Roles tab in the virtual datacenter will only display if the user has the Manage roles
privilege. By default, this privilege is only assigned to the CLOUD_ADMIN
role.
Make a region's virtual datacenters read only by default for an enterprise
To make a provider's virtual datacenters read only for an enterprise, edit the enterprise, and on the Allowed datacenters popup, edit the region. Assign the VDC default role. The platform will assign this role to all new virtual datacenters that you create in the region. An administrator may later change this role as required. The Default roles tab will only display when editing Allowed datacenters when the user has the Manage VDC default roles privilege. By default this privilege is only assigned to the CLOUD_ADMIN
role.
Make a provider's virtual datacenters read only by default for an enterprise
To make a provider's virtual datacenters read only for an enterprise, edit the enterprise, and on the Allowed datacenters panel, edit the provider. Assign the VDC default role.
The platform will copy this role to all regions in the provider. An administrator may later change this role as required at the regional or VDC level.