Product data

Chapter 9. IBM Systems Director Management Console management 205
Roles
There are four roles that are initially defined on the SDMC:
򐂰 SMAdministrator
The Administrator role has full authority to all tasks and commands, including
security administration, product installation, and configuration.
򐂰 SMManager
The Manager role can perform a subset of the tasks that an Administrator can
perform. Typically, system administration, system health management, and
configuration tasks are available.
򐂰 SMUser
The User role includes any authenticated user and allows only basic
operations, such as viewing resources and properties.
򐂰 SMMonitor
The Monitor role can access those administrative functions that provide
read-only access. Primarily, monitoring, notifications, and status tasks are
available.
Additionally, another role is predefined in the Systems Manager Director
Console:
򐂰 GroupRead
This permission grants a user the ability to view or open a group defined in
SDMC.
Roles can be listed on the command line by using the smcli lsrole command
(Example 9-3).
Example 9-3 Listing the SMAdministrator role using smcli lsrole
sysadmin@sdmca:~> smcli lsrole -l SMAdministrator
SMAdministrator:
ObjectType: InstanceAccessRole
DisplayName: SMAdministrator
Description: The Administrator role has full authority to all tasks
and commands, including security administration, product installation,
and configuration.
IsDefaultRole: false
IsSystemDefinedRole: true
Permissions: All Permissions