Skip to main content

Dell VxRail Security Configuration Guide

PDF

Authorization

This section describes information about user permissions, authorization, and role-based access control (RBAC).

The following table provides the key concepts and terminology:
Table 1. Key concepts and terminologyKey concepts and terminology
VMware vCenter Server Description
Privilege A fine-grain access control. For example, VxRail SaaS multicluster management adds a privilege that allows you to create a multicluster upgrade job.
Role Assign permissions on an object that is based on the tasks that users perform.
Permission Grants a user or group privileges for a specific object.

A permission triplet consists of the following:

  • Role
  • User or group
  • Object (cluster)

RBAC

VxRail Manager relies on the VMware vCenter Server RBAC model. After deployment, the Administrator and VMware HCIA Management roles in the VMware vCenter Server permit management of the cluster. You can configure custom roles to manage or view VxRail clusters.

If VMware SSO has been integrated with AD or OpenLDAP, you can manage VxRail users through groups that are assigned to roles in VMware vCenter Server. The VxRail API also uses the same VMware vCenter Server RBAC mechanism. API requests are sent to VMware SSO for authentication and authorization based on their VMware vCenter Server permissions.


Rate this content

Accurate
Useful
Easy to understand
Was this article helpful?
0/3000 characters
  Please provide ratings (1-5 stars).
  Please provide ratings (1-5 stars).
  Please provide ratings (1-5 stars).
  Please select whether the article was helpful or not.
  Comments cannot contain these special characters: <>()\