HP Integrity Superdome 2 16-socket HP Integrity Superdome 2 Onboard Administra - Page 15

Account authentication, Local users

Page 15 highlights

Account classification Capabilities own account • Can 'show' CLI commands Account name/privilege level Bays selected for this account Partition management capabilities User access to commands for managing the partition configuration and the partitions themselves can be controlled through the Parcon_Admin access right and partition access assignments using the ASSIGN PARCON_ADMIN and ASSIGN PARTITION commands. Access to ALL (current and future) or individual partitions by partition ID may be assigned. The following table identifies the operations accounts may use on assigned partitions based on privilege level. Account classification Partition capabilities Administrator • All commands available to Parcon Administrator accounts Account name/privilege level Parcon_Admin assigned Administrator/administrator Yes Parcon Administrator • Manage the partition configuration user name/administrator Yes (create, modify, delete partitions) • All partition operations available to Partition Administrator accounts • Access is always available to ALL partitions Partition Administrator • Restart the complex user name/administrator No • Update partition firmware • All partition operations available to Partition Operator accounts Partition Operator • Partition power and reset commands user name/operator No • Clear console logs • All partition operations available to Partition User accounts Partition User • View partition and event logs user name/user No • Connect to partition consoles • View partition status and info Account authentication Local users • This is the default setting. Local user accounts are directly authenticated against a password for each account stored on the active Onboard Administrator. • Account modifications are automatically synchronized between both Onboard Administrator modules if two are present. • Local users might be disabled if LDAP is enabled, leaving the Administrator account as the only local account that cannot be disabled. Access level and privileges 15

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183
  • 184
  • 185
  • 186
  • 187
  • 188
  • 189
  • 190
  • 191
  • 192
  • 193
  • 194
  • 195
  • 196
  • 197
  • 198
  • 199
  • 200
  • 201
  • 202
  • 203
  • 204
  • 205
  • 206
  • 207
  • 208
  • 209
  • 210
  • 211
  • 212
  • 213
  • 214
  • 215
  • 216
  • 217

Bays selected for
this account
Account name/privilege
level
Capabilities
Account classification
own account
Can 'show' CLI commands
Partition management capabilities
User access to commands for managing the partition configuration and the partitions themselves
can be controlled through the Parcon_Admin access right and partition access assignments using
the
ASSIGN PARCON_ADMIN
and
ASSIGN PARTITION
commands. Access to ALL (current and
future) or individual partitions by partition ID may be assigned. The following table identifies the
operations accounts may use on assigned partitions based on privilege level.
Parcon_Admin
assigned
Account name/privilege
level
Partition capabilities
Account classification
Yes
Administrator/administrator
All commands available to Parcon
Administrator accounts
Administrator
Yes
user name/administrator
Parcon Administrator
Manage the partition configuration
(create, modify, delete partitions)
All partition operations available to
Partition Administrator accounts
Access is always available to ALL
partitions
No
user name/administrator
Partition Administrator
Restart the complex
Update partition firmware
All partition operations available to
Partition Operator accounts
No
user name/operator
Partition Operator
Partition power and reset commands
Clear console logs
All partition operations available to
Partition User accounts
No
user name/user
Partition User
View partition and event logs
Connect to partition consoles
View partition status and info
Account authentication
Local users
This is the default setting. Local user accounts are directly authenticated against a password
for each account stored on the active Onboard Administrator.
Account modifications are automatically synchronized between both Onboard Administrator
modules if two are present.
Local users might be disabled if LDAP is enabled, leaving the Administrator account as the
only local account that cannot be disabled.
Access level and privileges
15