NetBackup™ Web UI Security Administrator's Guide

Last Published:
Product(s): NetBackup (8.1.2)
  1. Introducing the NetBackup web user interface
    1.  
      About the NetBackup web user interface
    2.  
      Terminology
    3.  
      First-time sign in to a NetBackup master server from the NetBackup web UI
    4.  
    5.  
      The NetBackup dashboard
  2. Managing role-based access control
    1.  
      About role-based access control (RBAC) in NetBackup
    2.  
      NetBackup default RBAC roles
    3.  
      Configuring RBAC
    4.  
      Add a custom role
    5.  
      Edit or delete a custom role
    6.  
      Add an object group
    7.  
      Previewing the assets, application servers, or protection plans for an object group
    8.  
      Edit or delete an object group
    9.  
      Add access for a user through access rules
    10.  
      Edit or remove user access rules
    11.  
      How can I limit role permissions to specific objects or assets?
  3. Security events and audit logs
    1.  
      About NetBackup auditing
    2.  
      View security events and audit logs
  4. Managing host mappings and certificates
    1.  
      About security management and certificates in NetBackup
    2.  
      NetBackup host IDs and host ID-based certificates
    3.  
      View NetBackup host information
    4.  
      Approve or add mappings for a host that has multiple host names
    5.  
      Reissue a certificate when a host's certificate is no longer valid
    6.  
      Remove mappings for a host that has multiple host names
    7.  
      Reset a host's attributes
    8.  
    9.  
  5. Managing global security settings
    1.  
      Disable communication with NetBackup 8.0 and earlier hosts
    2.  
      Disable automatic mapping of NetBackup host names
    3.  
      Select a security level for certificate deployment
    4.  
      Set a passphrase for disaster recovery
  6. Troubleshooting the web UI
    1.  
      Tips for accessing the NetBackup web UI
    2.  
      If a user doesn't have the correct permissions or access to workload assets in the NetBackup web UI

Edit or remove user access rules

If a user's role in your organization changes or you need to change the user's access to the assets in the environment, you have the following options:

  • Edit an access rule for the user and select a different RBAC role or a different object group.

    See Edit the access rule for a user.

  • If you use a custom role, change the permissions for an RBAC role. Note that changing the permissions also changes the permissions for any other users that are associated with that role.

    See Edit or delete a custom role.

  • Change the object group settings that determine the assets, application servers, or protection plans that the user can view or manage. Note that changing these settings also changes access for any other users that are associated with that object group.

    See Edit or delete an object group.

  • Remove an access rule for user so that user no longer has those role permissions or object group access that are defined in the access rule.

    See Remove an access rule for a user.

    If the user is currently signed in, use the API Gateway DELETE /user-sessions to sign out all users.

Edit the access rule for a user

Edit an access rule if you want to change the role permissions for a user or the assets, application servers, or protection plans that the user can view or manage. Any changes you make to an access rule affect only that user.

To edit the access rule for a user

  1. On the left, click Security > RBAC.
  2. Click the Access rules tab.
  3. Locate and click on the name of the user (which is the user's associated access rule) that you want to edit.

    Note that searches are case-sensitive.

  4. At the bottom left, click the lock icon.
  5. Select a different role or object group.
  6. Click Save.
  7. Repeat step 3 through step 6 to edit other access rules for the user.

Remove an access rule for a user

Remove an access rule for a user if you want to revoke the role permissions and object group access of the access rule. Removing an access rule only affects the user that is configured in the rule. The user still retains any permissions and access inherited from other access rules.

To remove an access rule for a user

  1. On the left, click Security > RBAC.
  2. Click the Access rules tab.
  3. Locate the name of the user and select the check box for the access rule that you want to remove.

    Note that searches are case-sensitive.

  4. Click Remove > Remove.