Restricted networks may be external, unmanaged, or public networks. Customers can use them to deliver managed services and for VM maintenance and control purposes.
Users with the appropriate privileges can attach or detach NICs in restricted networks to VMs. The privileges are as follows:
Attach NICs in restricted networks to VMs
Detach NICs in restricted networks from VMs
By default, only the cloud administrator role has these privileges.
To restrict access to a network, when you create or edit the network, select the Restricted option.
This functionality is available in the API, using the restricted
attribute of the VLANNetwork media type.
If the user has the privilege to attach or detach NICs in these networks, then they can manage the network IP addresses when configuring a VM. See VM network.