Veritas NetBackup™ Appliance Commands Reference Guide
- Overview
- Appendix A. Main > Appliance commands
- Appendix B. Main > Manage > FibreChannel commands
- Appendix C. Main > Manage > HighAvailability commands
- Appendix D. Main > Manage > Libraries commands
- Appendix E. Main > Manage > Libraries > Advanced > ACS commands
- Appendix F. Main > Manage > License commands
- Appendix G. Main > Manage > MountPoints commands
- Appendix H. Main > Manage > NetBackup CLI commands
- Appendix I. Main > Manage > OpenStorage commands
- Appendix J. Main > Manage > Software commands
- Appendix K. Main > Manage > Storage commands
- Appendix L. Main > Manage > Tapes commands
- Appendix M. Main > Monitor commands
- Appendix N. Main > Network commands
- Appendix O. Main > Network > Security commands (DeviceCert)
- Appendix P. Main > Reports commands
- Appendix Q. Main > Settings commands
- Appendix R. Main > Settings > Alerts commands
- Appendix S. Main > Settings > Notifications view commands
- Appendix T. Main > Settings > Security commands
- Appendix U. Main > Support commands
Name
Main > Settings > Security > Authorization — authorize users to access the appliance by assigning them various roles (permissions).
SYNOPSIS
Grant
List
Revoke
SyncGroupMembers
DESCRIPTION
The Authorization commands let you manage permissions for appliance users and user groups. The users include local, LDAP, Active Directory (AD), and single sign-on (SSO) users. The user groups include LDAP, AD, and SSO user groups.
You can use the Authorization commands to do the following:
Grant access privileges to the users and user groups that have been added to the appliance.
List all of the users and user groups that have been added to the appliance, along with their designated permissions.
Revoke access privileges from the users and user groups that have been added to the appliance.
OPTIONS
- Grant Administrator Group groups
Grant the Administrator role to one or more user groups. Here, groups is a comma-separated list of registered user groups that have been added to the appliance from a configured remote directory service (LDAP or AD).
- Grant Administrator Users users
Grant the Administrator role to one or more users. Here, users is a comma-separated list of local users, or registered users that have been added to the appliance from a configured remote directory service (LDAP or AD).
- Grant Administrator SSO_Groups groups
Grant the Administrator role to one or more SSO user groups. Here, groups are the names of the SSO user groups that are configured in the IDP server.
- Grant Administrator SSO_Users users
Grant the Administrator role to one or more SSO users. Here, users are the names of the SSO users that are configured in the IDP server.
- Grant AMS Group groups
Grant the AMS role to one or more user groups. Here, groups is a comma-separated list of registered user groups that have been added to the appliance from a configured remote directory service (LDAP or AD).
- Grant AMS Users users
Grant the AMS role to one or more users. Here, users is a comma-separated list of local users, or registered users that have been added to the appliance from a configured remote directory service (LDAP or AD).
- Grant AMS SSO_Groups groups
Grant the AMS role to one or more SSO user groups. Here, groups are the names of the SSO user groups that are configured in the IDP server.
- Grant AMS SSO_Users users
Grant the AMS role to one or more SSO users. Here, users are the names of the SSO users that are configured in the IDP server.
- Grant NetBackupCLI Group groups
Grant the NetBackupCLI role to one or more user groups. Here, groups is a comma-separated list of registered user groups that have been added to the appliance from a configured remote directory service (LDAP or AD).
- Grant NetBackupCLI Users users
Grant the NetBackupCLI role to one or more users. Here, users is a comma-separated list of registered users that have been added to the appliance from a configured remote directory service (LDAP or AD).
Note:
You cannot grant the NetBackupCLI role to an existing local user. However, you can create a local NetBackupCLI user by using the Main_Menu > Manage > NetBackupCLI > Create command from the NetBackup Appliance Shell Menu.
Note:
NetBackupCLI users are solely restricted to run the NetBackup CLI and do not have access outside the scope of NetBackup software directories. Once these users log in, they are provided restricted access to the shell menu for managing NetBackup. These users do not have access to NetBackup Appliance Web Console or the other menus of the shell menu.
- List
List all of the users and user groups that have been added to the appliance, along with their designated roles. The users include local users, SSO users, and the registered users that have been added to the appliance from a configured remote directory service (LDAP or AD). The user groups include SSO user groups and the user groups that have been added to the appliance from a configured remote directory service (LDAP or AD).
- Revoke Administrator Group groups
Revoke the Administrator role from one or more user groups. Here, groups is a comma-separated list of registered user groups that have been added to the appliance from a configured remote directory service (LDAP or AD).
- Revoke Administrator Users users
Revoke the Administrator role from one or more users. Here, users is a comma-separated list of local users, or registered users that have been added to the appliance from a configured remote directory service (LDAP or AD).
- Revoke Administrator SSO_Groups groups
Revoke the Administrator role from one or more SSO user groups. Here, groups are the names of the SSO user groups that are configured in the IDP server.
- Revoke Administrator SSO_Users users
Revoke the Administrator role from one or more SSO users. Here, users are the names of the SSO users that are configured in the IDP server.
- Revoke AMS Group groups
Revoke the AMS role from one or more user groups. Here, groups is a comma-separated list of local user groups, or registered user groups that have been added to the appliance from a configured remote directory service (LDAP or AD).
- Revoke AMS Users users
Revoke the AMS role from one or more users. Here, users is a comma-separated list of local users, or registered users that have been added to the appliance from a configured remote directory service (LDAP or AD).
- Revoke AMS SSO_Groups groups
Revoke the AMS role from one or more SSO user groups. Here, groups are the names of the SSO user groups that are configured in the IDP server.
- Revoke AMS SSO_Users users
Revoke the AMS role from one or more SSO users. Here, users are the names of the SSO users that are configured in the IDP server.
- Revoke NetBackupCLI Group groups
Revoke the NetBackupCLI role from one or more user groups. Here, groups is a comma-separated list of registered user groups that have been added to the appliance from a configured remote directory service (LDAP or AD).
- Revoke NetBackupCLI Users users
Revoke the NetBackupCLI role from one or more users. Here, users is a comma-separated list of local users, or registered users that have been added to the appliance from a configured remote directory service (LDAP or AD).
- SyncGroupMembers AddTask HHMM
Use this command to add a daily task that is synchronized for registered groups. Here, HHMM is the time of the day in hours and minutes.
- SyncGroupMembers DeleteTask
Delete the daily tasks that are synchronized for registered groups.
- SyncGroupMembers Now
Force synchronization for registered groups now.
- SyncGroupMembers ShowTask
View the daily tasks that are synchronized for registered groups.