Configuration - Role-to-Group Mappings

One of the first tasks you should perform after installing the product is to assign roles to anyone who will be using it. You can use the Role-to-Group Mapping page to map Aperi Storage Manager roles, such as Tape Operator or Fabric Administrator, to user groups that you create using the available tools for the operating system for a particular machine. For example, on a Windows machine you can create user groups using the Administrative Tools control panel. When a user name is used to authenticate with Aperi Storage Manager, the user's group membership determines the authorization level.

The extent to which a user can see and use the features of the product is based on the user's role.

If a user is a member of multiple groups, the authorization level is a combination of the levels for each of the groups. If a user is not a member of any of the groups that have been set up for authorization to the product, no access is granted.

Three levels of authorization are provided:

Roles

The following roles are available. This list assumes that the necessary components are available for the respective roles.

Tape Operator

This role can perform Tape Manager functions.

Tape Administrator

This role can perform Tape Manager functions and has limited access to other nodes.

Superuser

This role has full access to all available functions and services.

Productivity Center Administrator

This role has access to Administrative Services and Productivity Services features.

Fabric Operator

This role has access to Fabric Manager functions.

Fabric Administrator

This role can perform Fabric Manager functions and has limited access to other nodes.

Disk Operator

This role has access to Disk Manager functions.

Disk Administrator

This role can perform Disk Manager functions and has limited access to other nodes.

Data Operator

This role has access to Data Manager functions.

Data Administrator

This role can perform Data Manager functions and has limited access to other nodes.

Field Descriptions

Field Name

Description

Mapping fields

These fields show the operating system user groups that have been assigned to a particular user role. The default for these fields is no mapping.

Button Descriptions

Edit

Click this button to add or change the user group for a particular role. A small Edit Group window displays, allowing you to type the group name. Click OK to save the group name. It will display in the mapping field.

Delete

Click this button to delete the group name from the mapping field.