Users without the LPAR manager security permission are subject to
restrictions when performing the following LPAR manager security operations
by using the Web console, the LPAR manager screen, or HvmSh:
LPAR manager security operation
Restriction
User account management
Viewing user information.
Functional restrictions
apply.
1
Adding or deleting users
This function cannot be
executed.
Changing user passwords
Functional restrictions
apply.
2
Setting the validity period for
user passwords
This function cannot be
executed.
User authentication
Enabling or disabling user
authentication
This function cannot be
executed.
Configuring the user
authentication method
This function cannot be
executed.
Configuring LDAP or RADIUS
This function cannot be
executed.
Changing the period during
which a login to HvmSh is valid
This function cannot be
executed.
Obtaining the user
authentication log
(displaying authentication logs)
This function cannot be
executed.
Role-based access control
Setting roles
This function cannot be
executed.
Audit log
Setting the audit log
configuration
(specifying syslog transfer
settings)
This function cannot be
executed.
Encrypted communications
Changing the security strength
(changing the communication
protocols that can be used)
This function cannot be
executed.
Setting the connection mode for
the virtual COM console
This function cannot be
executed.
Creating a host key for SSH
connections for the virtual COM
console
This function cannot be
executed.
Certificate management
Creating or obtaining a CSR
This function cannot be
executed.
Enabling or disabling certificate
validation
This function cannot be
executed.
Creating, registering, obtaining,
or deleting certificates
This function cannot be
executed.
3-14
High Reliability Functions
Hitachi Compute Blade 500 Series Logical partitioning manager User's Guide