Role-Based Access Control
Note:
•
If you use HVM Navigator, you must disable user authentication of the LP
CLI or log in as a user with the LPAR manager security permission. The
role-based access control (RBAC) function limits the operations that can
be performed by each user based on the user's role.
Role-based access control applies to operations performed by using the Web
console, HVM Navigator, the LPAR manager screen, or HvmSh.
If you disable user authentication of the LP CLI, role-based access control will
also be disabled, allowing users to perform all operations.
A role is a group of one or more permissions assigned to a user.
By using roles to assign access permissions to users, you will be able to
change access permissions easily in LPAR manager.
User types
The table below lists and describes user types.
For details on user authentication, see
User Authentication on page 3-18
.
Types of users
Description
Local user
A locally authenticated user
LDAP-authenticated user
An LDAP-authenticated user
RADIUS-authenticated user
A RADIUS-authenticated user
LPAR manager user
A user who is logged in to LPAR manager
Management module user
A user who is logged in to a management module (the
Web console or CLI console), but who is not logged in to
LPAR manager
High Reliability Functions
3-11
Hitachi Compute Blade 500 Series Logical partitioning manager User's Guide