Skip to main content
  • Place orders quickly and easily
  • View orders and track your shipping status
  • Create and access a list of your products
  • Manage your Dell EMC sites, products, and product-level contacts using Company Administration.

Dell ObjectScale 1.3 Administration Guide

Roles for Management Users

Roles control the actions that are permitted on the ObjectScale Portal, on the Kubernetes command line, and in the API.

Role overview

ObjectScale roles are predefined. Custom roles are not supported.

Management Users with the Admin or Security Admin role can create other users and assign roles or edit roles. A Management User can have more than one role.

Roles control access to the ObjectScale instance and to individual object stores.

  • For ObjectScale, roles grant permissions to configure and monitor the system, configure users, and create and manage object stores.
  • For object stores, roles grant permissions to manage (Edit) or View specific stores.

Roles affect what the user sees on the ObjectScale Portal

The ObjectScale Portal is customized according to the roles of the logged in user. Users only see features that are available to them. For example:

  • If a user does not have access to any administrative actions, the Portal filters out administrative sections when that user logs in.
  • If a user has View access to two object stores, the Portal shows information about only those two object stores.

How to view your assigned roles

In the ObjectScale Portal, you can view the roles that are granted to the username that you used to log in. On any page, click the username in the upper right corner, and select View Permissions.

Users with appropriate roles can view the role assignments of other users. See View information about Management Users.

Summary of roles

The following table summarizes the available roles in ObjectScale. The roles correspond to typical user personas in a security-conscious organization.

Role name in the ObjectScale UI Role name in K8S and the ObjectScale API Description
Admin admin This role grants full control over all management operations.
Operations Admin operations_admin This role grants full control over all management operations except for security operations. It includes Read access to user and public certificates.
ReadOnly readonly This role grants read-only access to everything except for security information. It includes Read access to user and public certificates.
Security Admin security_admin This role grants full control over security operations only. It includes read access for other operations.
Storage Admin storage_admin This role grants full control over storage management, including creating and deleting object stores.
Storage Operator storage_operator This role grants full control over storage management, except for creating and deleting object stores.
<namespace>/<objectstorename> View <namespace>.<objectstorename>.<ObjectStoreID>.view This role grants read-only access to the named object store.
<namespace>/<objectstorename> Edit <namespace>.<objectstorename>.<ObjectStoreID>.edit This role grants full control over the named object store, except for deleting the object store.

Rate this content

Accurate
Useful
Easy to understand
Was this article helpful?
0/3000 characters
  Please provide ratings (1-5 stars).
  Please provide ratings (1-5 stars).
  Please provide ratings (1-5 stars).
  Please select whether the article was helpful or not.
  Comments cannot contain these special characters: <>()\