CloudCreator Administrator Roles and Permissions

CloudCreator has distinct Administrative roles, depending on the required access. Your assigned role affects the screens you can view, and the functions you can perform.

 

The Administrative roles and permissions are described below.

 

Role

Permission

Global Admin

  • Manage the parent cloud and all child clouds beneath.

  • Create and delete child clouds.

  • Add and remove users of parent and child clouds.

  • Add and remove resources from parent and child clouds (virtual machines, networks, etc).

  • View and manage virtual machines.

  • Add and remove subscriptions to services.

  • View the Create icon   in the side menu.

Cloud Admin

  • Manage a child cloud.

  • Add and remove its users.

  • Add and remove resources from within the child cloud (virtual machines, networks, etc).

  • View and manage virtual machines.

  • View the Create icon    in the side menu.

Global Security Admin

  • Govern who can manage the network security services of a parent or child cloud.

  • Separate by user, the management of security configurations from all other admin functions.

  • Assign or remove the Global Security Admin role to other users of a cloud.

  • Assign or remove security services roles (eg. Fortinet Management Administration) to a user.

  • Enable security services in Manage Subscriptions for parent and child clouds.

 

Note:

  • To enable the role of Global Security Admin (GSA) user (for the first time), please contact your Client Engagement Manager or the Service Desk.

  • Once enabled, the GSA user must assign the network security services roles (eg. Fortinet Management Administrator) to your non-GSA user account and/or other users as required. Note that if you are a GSA, and also require access to manage this service, you will need to create a separate CloudCreator account to enable this.  

  • A GSA user can only hold the role of GSA.

Cloud Security Admin

  • Manage the network security services of a child cloud.

  • Assign or remove security services roles (eg. Fortinet Management) to a user of a child cloud.

 

Note:

  • The first Cloud Security Admin user (CSA) of a child cloud can only be created by the Global Security Admin.

  • A CSA user can only hold the role of CSA.

Parent Cloud User

 

  • View and access only the cloud user roles specified in their user account, e.g. Cascade, Vault, IaaS. 

  • View virtual machine details once the associated account has been linked to a cloud provider.

 

Note:

  • Depending on the required level of access to subscribed services, this role will be selected as Administrator, Author, or User. See User Support Roles and Permissions for more information.

  • A combination of roles can be applied if required, eg. Administrator for PAYG and User for IaaS.

  • This role cannot view or administer child clouds, or view the Create icon in the side menu.

Child Cloud User

  • View and access only the cloud user roles specified in their user account, e.g. PAYG, Vault, IaaS. 

  • View virtual machine details once the associated account has been linked to a cloud provider.

 

Note:

  • Depending on the required level of access to subscribed services, this role will be selected as Administrator, Author, or User. See User Support Roles and Permissions for more information.

  • A combination of roles can be applied if required, eg. Administrator for PAYG, and User for IaaS.

  • This role cannot view or administer the parent cloud, or view the Create icon in the side menu.

 


 

The page cannot be found

The page you are looking for might have been removed, had its name changed, or is temporarily unavailable. Please make sure you spelled the page name correctly or use the search box.