Hey,
what exactly are the requirements? What do you need them to do, when you say "provision storage"? Should they just be able to create new shares on already existing volumes or do they need to create new volumes, new LIFs, local user accounts, etc.?
Best,
Alexander Griesser System-Administrator
ANEXIA Internetdienstleistungs GmbH
Telefon: +43-463-208501-320 Telefax: +43-463-208501-500
E-Mail: ag@anexia.at Web: http://www.anexia.at
Anschrift Hauptsitz Klagenfurt: Feldkirchnerstraße 140, 9020 Klagenfurt Geschäftsführer: Alexander Windbichler Firmenbuch: FN 289918a | Gerichtsstand: Klagenfurt | UID-Nummer: AT U63216601
-----Ursprüngliche Nachricht----- Von: Toasters toasters-bounces@teaparty.net Im Auftrag von Philbert Rupkins Gesendet: Mittwoch, 23. September 2020 00:25 An: Toasters toasters@teaparty.net Betreff: SVM Admin Access
Toasters,
I work with a team of Windows Server admins who are open to provisioning their own storage but strongly prefer a GUI. I'd like to provide this ability by granting System Manager access to the specific SVM's that host their resources.
Much to my chagrin, it doesn't appear RBAC allows for System Manager access to particular SVMs. Instead, privileges must be granted at the cluster level which of course means those privs are effective for all data SVMs (this is a non-starter).
Per NetApp docs, my only option appears to be SVM level RBAC privs via SSH. Not quite the GUI option they are looking for but, organizationally, we're making a push for more automation and use of Ansible so it's not completely out of the question.
Is there an angle Im not considering that would allow for SVM level access via System Manager? Has anybody else come up with creative ways to address this problem?
I'd love to hear from you.
Thanks, Phil _______________________________________________ Toasters mailing list Toasters@teaparty.net https://www.teaparty.net/mailman/listinfo/toasters