Managing System Permissions for a Cluster
While the system administrator of the cluster has the full range of permissions, a cluster administrator is a system administration role for a specific cluster only. This is a hierarchical model, and means that if a user is assigned the cluster administrator role for a cluster, all objects in the cluster can be managed by the user. The cluster administrator role permits the following actions:
- Creation and removal of specific clusters.
- Addition and removal of servers.
- Permission to attach users to servers within a single cluster.
To assign a system administrator role to a cluster:
- Click the Clusters tab.A list of clusters displays. If the required cluster is not visible, perform a search (see Section 2.2, “Search”).
- Select the cluster that you want to edit, and click the tab from the Details pane.The Permissions tab displays a list of users and their current roles and Inherited permissions, if any.
- Click to add an existing user. The Add Permission to User dialog box displays. Enter a Name, or User Name, or part thereof in the Search textbox, and click . A list of possible matches display in the results list.
- Select the check box of the user to be assigned the permissions. Scroll through the Assign role to user list and select .
- Click .The name of the user displays in the Permissions tab, with an icon and the assigned Role.
Note
You can only assign roles and permissions to existing users.
You can also change the system administrator of a cluster, by removing the existing system administrator, and adding the new system administrator, as described in the previous procedure.
To remove a system administrator role:
- Click the Clusters tab. A list of clusters displays. If the required cluster is not visible, perform a search (see ).
- Select the required cluster and click the tab from the Details pane.The Permissions tab displays a list of users and their current roles and permissions, if any.
- Select the check box of the appropriate user.
- Click . The user is removed from the Permissions tab. As this is hierarchical, the user will also be removed from the servers and volumes.