Contained Within
Find More DocumentationFeatured Support Resources | Download this book in PDF (1037 KB)
Chapter 2 Sun Cluster and RBACThis chapter describes RBAC (Role-Based Access Control) in relation to Sun Cluster. Topics covered include: Setting Up and Using RBAC With Sun ClusterUse the following table to determine the documentation to consult about setting up and using RBAC. Specific steps that you follow to set up and use RBAC with Sun Cluster are presented later in this chapter.
Sun Cluster RBAC Rights ProfilesSunPlex Manager and selected Sun Cluster commands and options that you issue on the command line use RBAC for authentication. Several RBAC rights profiles are included in Sun Cluster. You can assign these rights profiles to users or to roles to give them different levels of access to Sun Cluster. Sun provides the following rights profiles with Sun Cluster software.
Creating and Assigning an RBAC Role With a Sun Cluster Management Rights ProfileTo create a role, you must either assume a role that has the Primary Administrator rights profile assigned to it or run as root user. How to Create a Role by Using the Administrative Roles Tool
How to Create a Role From the Command Line
Example 2–1 Creating a Custom Operator Role by Using the smrole CommandThe following sequence demonstrates how a role is created with the smrole command. In this example, a new version of the Operator role is created that has assigned to it the standard Operator rights profile and the Media Restore rights profile.
To view the newly created role (and any other roles), use smrole with the list option, as follows:
Modifying a User's RBAC PropertiesTo modify a user's properties, you must either be running the User Tool Collection as root user or assume a role that has the Primary Administrator rights profile assigned to it. How to Modify a User's RBAC Properties by Using the User Accounts Tool
How to Modify a User's RBAC Properties From the Command Line
|
||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||