Dell Brocade 6520 Web Tools Administrator's Guide Supporting Fabric OS v7.1.0 - Page 199

Creating a user-defined role, the RBAC_ConfigManagement, RBAC_SwitchConfiguration

Page 199 highlights

User-defined roles 15 • In order for the user-defined role to be able to edit the Port Admin and FCR configuration, you must assign the RBAC_SwitchPortManagement and RBAC_SwitchPortConfiguration RBAC classes to the role. • In order for the user-defined role to be able to set the Fabric ID, you must assign the RBAC_FabricRouting and RBAC_SwitchConfiguration RBAC classes to the role. • In order for the user-defined role to be able to view reports, you must assign the RBAC_SwitchManagement,RBAC_SwitchConfiguration and RBAC_FRUManagement RBAC classes to the role. For some functionality and operations, which needs chassis level access, the user-defined role privileges must be assigned at both the chassis level and the Logical Fabric level to have the corresponding tab enabled: • In order for the user-defined role to have access to the Configure tab, you must assign either the RBAC_ConfigManagement, RBAC_SwitchConfiguration, or RBAC_Configure classes to the user-defined role, which is applied at the Logical Fabric level. Any of these three classes are sufficient. • In order for the user-defined role to have access to the Security Policy tab, you must assign either the RBAC_Authentication, RBAC_FabricDistribution, RBAC_Security, RBAC_IPSec, RBAC_AG, or RBAC_IPfilter classes to the user-defined role, which is applied at the Logical Fabric level. Any of these six classes is sufficient. • In order for the user-defined role to have access to the Switch tab, you must assign either the RBAC_SwitchConfiguration, RBAC_SwitchManagement, RBAC_FRUManagement, RBAC_AG, or RBAC_Configure classes to the user-defined role, which is applied at the Logical Fabric level. Any of these five classes is sufficient. Creating a user-defined role To add a user-defined role, perform the following steps. 1. Open the Switch Administration window as described in "Opening the Switch Administration window" on page 31. 2. Select the User tab. 3. Select the Role sub-tab. 4. Click the Add button. The Switch Admin:Add User Defined Role dialog displays. Web Tools Administrator's Guide 171 53-1002756-01

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183
  • 184
  • 185
  • 186
  • 187
  • 188
  • 189
  • 190
  • 191
  • 192
  • 193
  • 194
  • 195
  • 196
  • 197
  • 198
  • 199
  • 200
  • 201
  • 202
  • 203
  • 204
  • 205
  • 206
  • 207
  • 208
  • 209
  • 210
  • 211
  • 212
  • 213
  • 214
  • 215
  • 216
  • 217
  • 218
  • 219
  • 220
  • 221
  • 222
  • 223
  • 224
  • 225
  • 226
  • 227
  • 228
  • 229
  • 230
  • 231
  • 232
  • 233
  • 234
  • 235
  • 236
  • 237
  • 238
  • 239
  • 240
  • 241
  • 242
  • 243
  • 244
  • 245
  • 246
  • 247
  • 248
  • 249
  • 250
  • 251
  • 252
  • 253
  • 254
  • 255
  • 256
  • 257
  • 258
  • 259
  • 260
  • 261
  • 262
  • 263
  • 264
  • 265
  • 266
  • 267
  • 268

Web Tools Administrator’s Guide
171
53-1002756-01
User-defined roles
15
In order for the user-defined role to be able to edit the Port Admin and FCR configuration, you
must assign the RBAC_SwitchPortManagement and RBAC_SwitchPortConfiguration RBAC
classes to the role.
In order for the user-defined role to be able to set the Fabric ID, you must assign the
RBAC_FabricRouting and RBAC_SwitchConfiguration RBAC classes to the role.
In order for the user-defined role to be able to view reports, you must assign the
RBAC_SwitchManagement,RBAC_SwitchConfiguration and RBAC_FRUManagement RBAC
classes to the role.
For some functionality and operations, which needs chassis level access, the user-defined role
privileges must be assigned at both the chassis level and the Logical Fabric level to have the
corresponding tab enabled:
In order for the user-defined role to have access to the
Configure
tab, you must assign either
the RBAC_ConfigManagement, RBAC_SwitchConfiguration, or RBAC_Configure classes to the
user-defined role, which is applied at the Logical Fabric level. Any of these three classes are
sufficient.
In order for the user-defined role to have access to the
Security Policy
tab, you must assign
either the RBAC_Authentication, RBAC_FabricDistribution, RBAC_Security, RBAC_IPSec,
RBAC_AG, or RBAC_IPfilter classes to the user-defined role, which is applied at the Logical
Fabric level. Any of these six classes is sufficient.
In order for the user-defined role to have access to the
Switch
tab, you must assign either the
RBAC_SwitchConfiguration, RBAC_SwitchManagement, RBAC_FRUManagement, RBAC_AG, or
RBAC_Configure classes to the user-defined role, which is applied at the Logical Fabric level.
Any of these five classes is sufficient.
Creating a user-defined role
To add a user-defined role, perform the following steps.
1.
Open the
Switch Administration
window as described in
“Opening the Switch Administration
window”
on page 31.
2.
Select the
User
tab.
3.
Select the
Role
sub-tab.
4.
Click the
Add
button.
The
Switch Admin:Add User Defined Role
dialog displays.