XCP-ng
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Groups
    • Register
    • Login

    Question on permissions

    Scheduled Pinned Locked Moved Solved Management
    9 Posts 3 Posters 347 Views 3 Watching
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • R Offline
      rtjdamen
      last edited by

      We do sometimes create XOA users with user permissions, i then add them with ACL to a specific VM and give them admin access to that vm to create snapshots and do admin tasks on that specific vm. For some reason this does not work, u get the error permission denied? Am i doing something wrong or is this not supported?

      1 Reply Last reply Reply Quote 0
      • MathieuRAM Offline
        MathieuRA Vates 🪐 XO Team @rtjdamen
        last edited by

        Hi @rtjdamen 🙂

        In the VM's advanced tab, in the Misc section, you should see Resource set with a selector.
        Capture d’écran de 2024-08-13 10-53-58.png

        R 1 Reply Last reply Reply Quote 1
        • olivierlambertO Offline
          olivierlambert Vates 🪐 Co-Founder CEO
          last edited by

          Hi,

          To create a snapshot you need to have operator permission on the SR (because a snap will create new disks on the SR)

          R 1 Reply Last reply Reply Quote 0
          • R Offline
            rtjdamen @olivierlambert
            last edited by

            @olivierlambert thanks for the prompt response, unfortunatly that is not a permission i could give the end user as we do not want him to be able to view storage related stuff. is there any way to workaround this? giving him the permission without the ability to view the storage itself in xoa?

            1 Reply Last reply Reply Quote 0
            • olivierlambertO Offline
              olivierlambert Vates 🪐 Co-Founder CEO
              last edited by

              Self service then 🙂

              R 1 Reply Last reply Reply Quote 0
              • R Offline
                rtjdamen @olivierlambert
                last edited by

                @olivierlambert that sounds like a plan, i have created a self service for this user, added all storage and hosts but i still am not able to create a snapshot, also i do not see an option to give this right to the self service. Can u give me some guidance on how to get this done?

                MathieuRAM 1 Reply Last reply Reply Quote 0
                • olivierlambertO Offline
                  olivierlambert Vates 🪐 Co-Founder CEO
                  last edited by

                  It works if the VM was created in the self service in the first place. IDK if you can add an existing VM into a self service created afterward. Ping @MathieuRA or @pdonias

                  1 Reply Last reply Reply Quote 0
                  • MathieuRAM Offline
                    MathieuRA Vates 🪐 XO Team @rtjdamen
                    last edited by

                    Hi @rtjdamen 🙂

                    In the VM's advanced tab, in the Misc section, you should see Resource set with a selector.
                    Capture d’écran de 2024-08-13 10-53-58.png

                    R 1 Reply Last reply Reply Quote 1
                    • R Offline
                      rtjdamen @MathieuRA
                      last edited by

                      @MathieuRA ok, i will check this. so if i create an empty resourceset, and assign this to the group in question and add the vms to this resourceset this should work. Is there a downside on creating an empty resourceset?

                      R 1 Reply Last reply Reply Quote 0
                      • R Offline
                        rtjdamen @rtjdamen
                        last edited by

                        So far this seems to work well. we will test this and inform if there is any issue with it. On behalf of my customer i would like to thank you for the quick response!

                        1 Reply Last reply Reply Quote 1
                        • olivierlambertO olivierlambert marked this topic as a question on
                        • olivierlambertO olivierlambert has marked this topic as solved on
                        • First post
                          Last post