User authorization is a method for restricting the management operations that users can perform on a storage system.
About this task
See Roles and associated permissions for an
overview of the Role-Based Access Control (RBAC) functionality.
To view the authorized users and groups list:
Steps
-
Select
to open the
Settings panel.
-
Select
.
-
Select your required storage system ID from the drop-down list.
-
To see more information about a user, select the user and on the right side of the row, click the
icon.
The following properties display:
- Name—User or group name
- Type—Type
- Authority—Authentication authority. Possible values are:
- Local Directory—Directory of users and encrypted passwords that are stored in a CST .xml file (users only, no groups)
- Windows OS—Local Windows users and groups
- Windows AD—Windows Active Directory users and groups that are accessed through the SMAS server domain
- LDAP-SSL—Users and groups
on LDAP server that have been configured the Configure
Authorization wizard
- Domain—Domain name. Possible values are based on the authentication authority:
Table 1. Domain name values
| Authority
|
Domain name
|
|
Local directory Windows operating system
|
Unisphere server hostname
|
|
Windows AD
|
Unisphere server domain
|
|
LDAP-SSL
|
LDAP server domain
|
|
Virtualization domain
|
Virtualization domain
|
|
Any authority
|
Any
|
- System- Storage systems associated with the user
- Roles- Roles associated with the user
- Component Name- Component name. An example of a component is a storage group instance.