How can I limit access to a satellite user to only allow specific API calls?
Issue
- Is it possible to limit access to a satellite user so that they can only run system.deleteSystem()?
- Specifically, we have a script that will be used by our developers to "unregister" a VM from our satellite server.
However, a clever developer realized that this service account used for deleting systems had "System Group Administrator" permissions and potentially used it for unauthorized access. - What is the best way to limit access to account so that the account can only delete a system?
Environment
- Red Hat Network Satellite 5
Subscriber exclusive content
A Red Hat subscription provides unlimited access to our knowledgebase of over 48,000 articles and solutions.
Welcome! Check out the Getting Started with Red Hat page for quick tours and guides for common tasks.
