User groups

Administrators can create role-based user groups where any users that are added to the group adopt the role that is assigned to that group.

Roles apply to both local and remote users on the system and are based on the user group to which the user belongs. Users with the Security Administrator role can organize users of the system by role through user groups.

The following user groups are configured by default:

SecurityAdmin
Users access all functions on the system, including managing users, user groups, and user authentication.
Administrator
Users have access to all functions on the system except those functions that deal with managing users, user groups, and authentication.
RestrictedAdmin
Users can perform the same tasks and run most of the same commands as administrator-role users. However, users with the Restricted Administrator role cannot remove volumes, host mappings, hosts, or pools. Support personnel can be assigned this role to help resolve errors and fix problems.
CopyOperator
Users manage FlashCopy®, Metro Mirror, and Global Mirror relationships.
Service
Users can set the time and date on the system, delete dump files, add and delete nodes, apply service, and shut down the system. Users can also complete the same tasks as users in the monitor role.
Monitor
Users can view objects and system configuration but cannot configure, modify, or manage the system or its resources.
VASA Provider
Users with this role can manage VMware vSphere Virtual Volumes.
Contents | Monitoring | Pools | Volumes | Hosts | Copy Services | Access | Settings | More Information