|
||||||||||||||||||||||||||||||||||||||||||||
1. Solaris Management Tools (Road Map) 2. Working With the Solaris Management Console (Tasks) Solaris Management Console (Overview) Becoming Superuser (root) or Assuming a Role Starting the Solaris Management Console Using the Solaris Management Tools in a Name Service Environment (Task Map) Adding Tools to the Solaris Management Console Troubleshooting the Solaris Management Console 3. Working With the Sun Java Web Console (Tasks) 4. Managing User Accounts and Groups (Overview) 5. Managing User Accounts and Groups (Tasks) 6. Managing Client-Server Support (Overview) 7. Managing Diskless Clients (Tasks) 8. Introduction to Shutting Down and Booting a System 9. Shutting Down and Booting a System (Overview) 10. Shutting Down a System (Tasks) 11. Modifying Solaris Boot Behavior (Tasks) 12. Booting a Solaris System (Tasks) 13. Troubleshooting Booting a Solaris System (Tasks) 14. Managing the Solaris Boot Archives (Tasks) 15. x86: GRUB Based Booting (Reference) 16. Managing Services (Overview) 18. Managing Software (Overview) 19. Managing Software With Solaris System Administration Tools (Tasks) 20. Managing Software by Using Package Commands (Tasks) 21. Managing Solaris Patches by Using the patchadd Command (Tasks) |
Using the Solaris Management Tools With RBAC (Task Map)This task map describes the tasks to do if you want to use the RBAC security features rather than the superuser account to perform administration tasks. Note - The information in this chapter describes how to use the console with RBAC. RBAC overview and task information is included to show you how to initially set up RBAC with the console. For detailed information on RBAC and how to use it with other applications, see Role-Based Access Control (Overview) in System Administration Guide: Security Services.
The following sections provide overview information and step-by-step instructions for using the Solaris Management Console and the RBAC security features. If You Are the First to Log in to the ConsoleIf you are the first administrator to log in to the console, start the console as a user (yourself). Then, log in as superuser. This method gives you complete access to all the console tools. Here are the general steps, depending on whether you are using RBAC:
Creating the Primary Administrator RoleAn administrator role is a special user account. Users who assume a role are permitted to perform a predefined set of administrative tasks. The Primary Administrator role is permitted to perform all administrative functions, similar to superuser. If you are superuser, or a user assuming the Primary Administrator role, you can define which tasks other administrators are permitted to perform. With the help of the Add Administrative Role wizard, you can create a role, grant rights to the role, and then specify which users are permitted to assume that role. A right is a named collection of commands, or authorizations, for using specific applications. A right enables you to perform specific functions within an application. The use of rights can be granted or denied by an administrator. You are prompted for the following information when you create the Primary Administrator role. Table 2-2 Field Descriptions for Adding a Role by Using the Solaris Management Console
For detailed information about role-based access control, and instructions on how to use roles to create a more secure environment, see Role-Based Access Control (Overview) in System Administration Guide: Security Services. How to Create the First Role (Primary Administrator)This procedure describes how to create the Primary Administrator role and then assign it to your user account. This procedure assumes that your user account is already created.
How to Assume the Primary Administrator RoleAfter you have created the Primary Administrator role, log in to the console as yourself, and then assume the Primary Administrator role. When you assume a role, you take on all the attributes of that role, including the rights. At the same time, you relinquish all of your own user properties.
|
|||||||||||||||||||||||||||||||||||||||||||
|