Hardware manual

Group Administration Group security
4–5
Displaying local administration accounts
To see the names, types, access permissions or status of local administration accounts:
1. Click
Group, then Group Configuration.
2. Select the Administration tab. The Group Administration window appears.
See the online help for information about the data fields and options.
Creating a local administration account
You can configure, manage, and authenticate local administration accounts within the group. Local accounts are
practical when you need only a small number of administration accounts for the group.
Before creating a local administration account, gather the inform
ation described in Administration account
attributes on pag
e 4-4.
1. Click
Group Configuration, then Administration tab.
2. In the Administration Accounts panel, click Add. The Create Account - General Settings dialog box appears.
3. Enter the account name, password, and description (optional) and click
Next. The Create Account - Account
Permissions dialog box appears.
4. Select the type of account and (if applicab
le) the pool access and read access to the group.
Type Account type:
Group administrator – Can change any and all aspects
of the group, storage pools, members, and
volumes, except updating member firmware.
Pool administrator – Can manage the volumes, members, snapshots, and other objects only in the
pool or
pools for which the account has authorization. Optionally, pool administrators can view
information about all group objects.
Volume administrator – Can manage the volumes for which the account has authorization.
Additionally,
volume administrators can view information about pools to which the account has
access.
Read-only – Can view information about all group objects, but cannot change the group.
Managed pools Pools to which the account has access, and, if the account is
a Volume administrator, the storage quota
the account can manage within the selected pool(s). Applies to Pool administrators and Volume
administrators.
Replication Partners The group(s) on which the account can delegate space for replication and replicate volumes.
Applies
t
o Volume administrators only.
Additional access
permi
s
sion
Grants read access to the entire group. Applies to Pool administrator and Read-only accounts; Volume
administrators only have read access to the individual pools containing the storage quota they manage.
Contact Name, e-mail address, and phone numbers
for the
account owner.
Enable administration
account
Whether the account is enabled or disabled. A user ca
nnot log into a disabled account.
Table 4-5: Administration Account Attributes (Continued)
Attribute Description