Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Second ACLs implementation #209

Closed
olivierlambert opened this issue Mar 10, 2015 · 0 comments

Comments

@olivierlambert
Copy link
Member

commented Mar 10, 2015

This is the next step after this successful one: #202

The second step is to have:

  • a bunch of users -> a group
  • a bunch of permissions -> a role
  • a bunch of objects (VM etc.) -> a set

Examples:

  • Group: contains user "john", "foo" and "bar"
  • Role: contains action VM.start, VM.stop, console access, and VM.reboot
  • Set: contains VM "test1", "test2" etc.

For now, using pre-existing roles:

  • read (user/group can only see it's objects)
  • basic (user/group can make basic cycle operation, stop/restart/console)
  • advanced (user/group can modify the RAM, vCPUs, snapshots, etc.)
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Projects
None yet
2 participants
You can’t perform that action at this time.