[one-users] ACL rules - vDCADMIN

Daniel Molina dmolina at opennebula.org
Wed Jun 11 02:02:36 PDT 2014


Hi Stefan,

Sunstone does not check ACLs to display the different actions, instead you
have to use the "sunstone-views/*.yaml" files to tweak the layout.

BTW, the vdcadmin view is going to be redesigned in one-4.8 based on the
new cloud view included in one-4.6

Cheers


On 6 June 2014 13:04, Stefan Kooman <stefan at bit.nl> wrote:

> Hi,
>
> I'm playing with vDC's and vDCADMIN accounts. I've created a vDC (group,
> admin user for group and added a resource provider):
>
> onegroup create --name UNDEF --admin_user VDCADMIN_UNDEF
> --admin_password notdisclosed --resources TEMPLATE+VM --admin_resources
> TEMPLATE+VM+IMAGE+NET
>
> onegroup add_provider UNDEF 0 103
>
>    ID     USER RES_VHNIUTGDCOZ   RID OPE_UMAC  ZONE
>    32     @104     V----T-----     *     ---c     *
>    33       #7     ----U------  @104     umac     *
>    34       #7     V-NI-T-----  @104     um-c     *
>    35     @104     -H---------  %103     -m--    #0
>    36     @104     --N----D---  %103     u---    #0
>
> According to the ACL's the vDC Admin "VDCADMIN_UNDEF" should have
> permissions
> to create templates and images. The "VDCADMIN_UNDEF" however does not
> have the ability to create a new template / image. There's no green
> "plus" symbol that allows you to create a new template / image. Am I
> missing something here?
> I've explicitly added an ACL to grant all rights for resource
> "Templates" but to no avail (#7 TEMPLATE/* USE+MANAGE+ADMIN+CREATE *).
>
> Thanks,
>
> Stefan
>
>
>
> --
> | BIT BV  http://www.bit.nl/        Kamer van Koophandel 09090351
> | GPG: 0xD14839C6                   +31 318 648 688 / info at bit.nl
> _______________________________________________
> Users mailing list
> Users at lists.opennebula.org
> http://lists.opennebula.org/listinfo.cgi/users-opennebula.org
>



-- 
--
Daniel Molina
Project Engineer
OpenNebula - Flexible Enterprise Cloud Made Simple
www.OpenNebula.org | dmolina at opennebula.org | @OpenNebula
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.opennebula.org/pipermail/users-opennebula.org/attachments/20140611/a3140ad7/attachment.htm>


More information about the Users mailing list