Brocade Fabric OS Encryption Administrator’s Guide Supporting Key Management Interoperability Protocol (KMIP) Key-Compliant Environments (Supporting Fabric OS v7.1.0) User Manual
Page 162
144
Fabric OS Encryption Administrator’s Guide (KMIP)
53-1002747-02
Command RBAC permissions and AD types
3
createhacluster
N
OM
N
N
N
OM
N
N
Disallowed
createtapepool
N
OM
N
N
N
OM
N
N
Disallowed
decommission
N
OM
N
N
N
OM
N
N
Disallowed
deletecontainer
N
OM
N
N
N
OM
N
N
Disallowed
deletedecommissionedkeyids
N
OM
N
N
N
OM
N
N
Disallowed
deleteencgroup
N
OM
N
N
N
N
N
OM
Disallowed
deletefile
N
OM
N
N
N
N
N
OM
Disallowed
deletehacluster
N
OM
N
N
N
OM
N
N
Disallowed
deletetapepool
N
OM
N
N
N
OM
N
N
Disallowed
deregkeyvault
N
OM
N
N
N
N
N
OM
Disallowed
deregmembernode
N
OM
N
N
N
N
N
OM
Disallowed
disableEE
N
OM
N
N
N
N
N
OM
Disallowed
discoverLUN
N
OM
N
N
N
OM
N
N
Disallowed
eject
N
OM
N
N
N
N
N
OM
Disallowed
enable
N
OM
N
N
N
OM
N
N
Disallowed
enableEE
N
OM
N
N
N
N
N
OM
Disallowed
export
N
OM
N
N
N
N
N
OM
Disallowed
exportmasterkey
N
OM
N
N
N
N
N
OM
Disallowed
failback
N
OM
N
N
N
OM
N
N
Disallowed
genmasterkey
N
OM
N
N
N
N
N
OM
Disallowed
help
N
OM
N
N
N
OM
N
OM
Disallowed
import
N
OM
N
N
N
N
N
OM
Disallowed
initEE
N
OM
N
N
N
N
N
OM
Disallowed
initnode
N
OM
N
N
N
N
N
OM
Disallowed
kvdiag
N
OM
N
N
N
N
N
OM
Disallowed
leave_encryption_group
N
OM
N
N
N
N
N
OM
Disallowed
manual_rekey
N
OM
N
N
N
OM
N
N
Disallowed
modify
N
OM
N
N
N
OM
N
N
Disallowed
move
N
OM
N
N
N
OM
N
N
Disallowed
perfshow
N
OM
N
N
N
OM
N
O
Disallowed
TABLE 4
Encryption command RBAC availability and admin domain type
1
(Continued)
Command name
User
Admin
Operator
Switch
Admin
Zone
Admin
Fabric
Admin
Basic
Switch
Admin
Security
Admin
Admin Domain