Create a user account in Ops Center Analyzer, and then set permissions by the user role. When you configure Ops Center Common Services for Ops Center Analyzer, you can manage users from the Ops Center portal. For more information about how to configure Common Services for single sign-on, see the Hitachi Ops Center Analyzer Installation and Configuration Guide.
User account types
After installation, a default system account is set up. The system account (user name: system; default password: manager) is a fully privileged, built-in administrator account used to manage all the functions in Ops Center Analyzer. Use the system account to do all tasks and manage users in Ops Center Analyzer. You cannot delete or change the default user ID.
When registering new user accounts, set permissions for the types of tasks each user can do based on the user role.
After adding basic user information such as username, password, email, and description, set permissions for available applications, such as:
-
User Management
-
IAA
User permissions
There are four types of user permissions:
-
Admin
Users with Administrator permissions can perform all management tasks in Ops Center Analyzer except those related to managing users, configuring security options, and modifying I/O control settings.
-
Modify
Users with Modify permissions can perform all management tasks in Ops Center Analyzer except those related to managing users, configuring security options, setting up email notifications, configuring the connection settings for the Analyzer detail view server, and modifying I/O control settings.
-
User Management
Users with User Management permissions can perform all tasks related to managing users and configuring security options. You can use this type of permission with other types of permissions.
-
StorageOps
Users with StorageOps permissions can perform all tasks related to the I/O control settings on the Operations tab. These users can monitor and regulate the I/O rate of the monitored volumes. Only users with Admin or Modify permissions can be assigned StorageOps permissions.
User account administration
You can do the following tasks on the User Management window. Select .
- Add or delete user accounts.
- Set permissions for user accounts.
- Reference or edit user account profiles.
- Change the password of a user account.
- Change the status of a locked user account.
User account authentication
If you have configured Ops Center common services for using single sign-on, you can manage Ops Center Analyzer user accounts from the Ops Center portal.
You can also manage user accounts by linking to an external authentication server, such as an Active Directory server, LDAP directory server, RADIUS server, or Kerberos server.
However, the built-in accounts (system) cannot be authenticated on an external authentication server. The Ops Center Analyzer user account used to connect to external authentication/authorization servers is managed as an Active Directory (Authorization) group. Permissions that are specified for authorized groups are also applied to users who belong to nested groups.