2.7

Table Of Contents
Template user role
Template users can use any resource templates and backup templates when
creating databases.
User administrator role
The User administrator role manages users at the system level, including
creating, editing settings for, and deleting system users.
Privileges
Privileges define the allowable actions on objects in vFabric Data Director. You associate privileges with a user
login and a Data Director object to define permissions.
For example, the Start and Stop Database privilege indicates that in general, Data Director users can start and
stop databases. But the privilege by itself does not indicate which users can start and stop databases, or the
databases that they can start and stop. To provide context, you associate the privilege with a user login and a
Data Director object. The combination of privilege, user login, and Data Director object is a permission. You
can group related permissions into roles to package all the permissions required to perform a job, such as that
of database administrator.
System
System privileges relate to Data Director management, such as Manage
Resources and Manage System Settings. These privileges apply only to the
system. System privileges do not propagate to organizations.
Organizations
Privileges on organizations relate to organization management, such as
Manage Organization Settings and Manage Registration. Organization
privileges apply only to organizations. They do not propagate beyond
organization boundaries.
Database Group
Privileges on database groups relate to database group management, such as
Create Databases and Import Backups. Database group privileges apply only
within the organization and to the organization's database groups.
Organization administrators and users with database group management
privileges grant and revoke privileges on database groups, and enable users to
access a database group by adding the database group to the user's account.
Databases
Privileges on databases relate to database management, such as Start and Stop
Database and Edit Database Info. Database privileges apply only to databases,
database groups, and organizations. If a database-related privilege is on a
database group, that privilege applies to all databases within that database
group. If the database-related privilege is on an organization, it applies to every
database group and database in the organization.
Organization administrators and users with database management privileges
grant and revoke these privileges and permissions on databases. To gain access
to databases, the databases must be added to a user's account.
Resource Templates,
Backup Templates, and
Base DB Templates
Privileges on templates relate to template management, such as edit template
and view and user template. Edit template applies only to the organization.
View and user template applies to individual templates or to the organization.
If a template privilege is on an organization, it applies to all templates within
that organization.
Organization administrators and users with template management privileges
grant and revoke template privileges and permissions. To gain access to
templates, the templates must be added to a user's account.
Chapter 3 Managing Users and Roles
VMware, Inc. 37