56
Managing user accounts
Role Permissions
Table 10
describes the types of permissions that are assigned to roles.
Table 11
shows the permission type for categories of commands that each role is assigned. The
permissions apply to all commands within the specified category. For a complete list of commands and
role permissions.
Table 10
Permission types
Abbreviation
Definition
Description
O
Observe
The user can run commands using options that display information only,
such as running
userConfig --show -a
to show all users on a switch.
M
Modify
The user can run commands using options that create, change, and
delete objects on the system, such as running
userconfig --change
username
-r
rolename
to change a user’s role.
OM
Observe-Mod
ify
The user can run commands using both observe and modify options; if
a role has modify permissions, it almost always has observe.
N
None
The user is not allowed to run commands in that category.
Table 11
RBAC permissions matrix
Category
Role permission
User Operator Switch
admin
Zone
admin
Fabric
admin
Basic
switchadmin
Admin
Admin Domains
N
N
N
N
N
N
OM
Admin
Domains—Selection
OM
OM
OM
OM
OM
OM
OM
APM
O
O
OM
N
OM
O
OM
Audit
O
O
O
O
O
O
O
Authentication
N
N
N
N
N
N
OM
Blade
O
OM
OM
N
OM
O
OM
Chassis Configuration
O
OM
OM
N
OM
O
OM
Configuration
Management
N
O
O
O
O
O
OM
Debug
N
N
N
N
N
N
N
Diagnostics
O
OM
OM
N
OM
O
OM
Ethernet Configuration
O
O
OM
N
OM
O
OM
Fabric
O
O
O
N
OM
O
OM
Fabric Distribution
N
N
N
N
OM
N
OM
Fabric Routing
O
O
O
O
OM
O
OM
Fabric Watch
O
OM
OM
N
OM
O
OM
FICON
O
OM
OM
N
OM
O
OM
Firmware
Management
O
OM
OM
O
OM
O
OM
FRU Management
O
OM
OM
N
OM
O
OM
HA (High Availability) O
O
OM
N
OM
O
OM
iSCSI
O
O
O
O
OM
O
OM
Summary of Contents for AE370A - Brocade 4Gb SAN Switch 4/12
Page 18: ...18 ...
Page 82: ...82 Managing user accounts ...
Page 102: ...102 Configuring standard security features ...
Page 126: ...126 Maintaining configurations ...
Page 198: ...198 Routing traffic ...
Page 238: ...238 Using the FC FC routing service ...
Page 260: ...260 Administering FICON fabrics ...
Page 280: ...280 Working with diagnostic features ...
Page 332: ...332 Administering Extended Fabrics ...
Page 414: ...398 Configuring the PID format ...
Page 420: ...404 Configuring interoperability mode ...
Page 426: ...410 Understanding legacy password behaviour ...
Page 442: ...426 ...
Page 444: ......
Page 447: ......