Managing Flex Appliance Console users and tenants
You can manage all of your Flex Appliance Console users from the Access management page. To access the Access management page, sign in to the console and click the Access management icon in the left-side navigation bar.
Users are assigned to tenants. A tenant is a separate space for a specific group of users and for a specific use. Different tenants can be allocated for different user groups.
See Adding a tenant.
Note:
In this version of Flex Appliance, all users are assigned to all tenants.
The following types of users are supported on the Flex Appliance Console:
Local users
Active Directory and LDAP users
See Connecting a remote user domain to the Flex Appliance Console.
Single sign-on (SSO) users
Service accounts
User roles determine the access privileges that a user has on the Flex Appliance Console.
All users have the observer role by default except for the first local user that you add, which has the administrator and the security administrator roles. Users with the security administrator role can assign additional roles from the Access management page. Select the user and click .
The following base roles are available:
Security administrator
This role can manage users and oversee the security management of the appliance.
Administrator
This role can perform all but the security operations on the Flex Appliance Console.
Observer
This role can view all but the security information on the Flex Appliance Console. It cannot perform any operations.
The following extended roles are available:
Application operator
This role can start, stop, and relocate application instances.
BIOS administrator
This role can manage the BIOS password. It is available on appliances that support BIOS password protection.
This role is not available in 5x7x appliance models.
Security observer
This role can view the security information on the Flex Appliance Console. It cannot perform any operations.
SED Key Administrator
This role manages the encryption keys that secure data on Self-Encrypting Drives.
This role is available only on SED appliances.
Support
This role has access to view and manage the appliance logs.
You can also create custom roles with user-defined access profiles that allow you to create specific permission sets beyond the default options.