Manage access to cloud servers and flavors
Access to cloud servers and flavors is governed by a role model that defines access within an account and project. For more information, refer to the Access Control in Selectel Products manual.
member
User with full access to all services. Does not have access to manage: users, service users, user groups and federations.
| Access areas |
|
|---|---|
| Who can be prescribed |
|
| Available operations with cloud servers and flavors | In the Account access area:
|
In the access area Project:
|
reader
A user with access to view everything he controls member in the same access area.
| Access areas |
|
|---|---|
| Who can be prescribed |
|
| Available operations with cloud servers and flavors | In the Account access area:
|
In the access area Project:
|
billing
User with access to billing management and without access to service management.
| Access areas | Account |
|---|---|
| Who can be prescribed |
|
| Available cloud server operations |
|
iam.admin
User with access to user management and without access to services and billing. Cannot manage his account: change permissions, manage notifications, delete the user. The first user with the iam.admin role is created by the Account Owner.
| Access areas | Account |
|---|---|
| Who can be prescribed |
|
| Available operations with cloud servers and flavors |
|
iam.viewer
A user with access to view everything they manage iam.admin.
| Access areas | Account |
|---|---|
| Who can be prescribed |
|
| Available operations with cloud servers and flavors |
|
compute.admin
User with access to manage cloud servers, flavors and placement groups. Does not have access to other products.
| Access areas |
|
|---|---|
| Who can be prescribed |
|
| Available operations with cloud servers and flavors | In the Account access area:
|
In the access area Project:
|
* Except for the role compute.admin user must have a role with access to manage the cloud platform's cloud platform networks.
compute.viewer
User with access to view cloud servers, flavors, and placement groups. Does not have access to other products.
| Access areas |
|
|---|---|
| Who can be prescribed |
|
| Available operations with cloud servers and flavors | In the Account access area:
|
In the access area Project:
|
compute.server.user
User with access to cloud server management. Does not have access to other products.
| Access areas |
|
|---|---|
| Who can be prescribed |
|
| Available operations with cloud servers and flavors | In the Account access area:
|
In the access area Project:
|
* Except for the role compute.server.user the user must have a role with access to manage the cloud platform's networks, network disks, images and backups.
compute.server.viewer
User with access to view cloud servers. Does not have access to other products.
| Access areas |
|
|---|---|
| Who can be prescribed |
|
| Available operations with cloud servers and flavors | In the Account access area:
|
In the access area Project:
|
compute.flavor.admin
User with access to cloud server flavor management. Does not have access to other products.
| Access areas |
|
|---|---|
| Who can be prescribed |
|
| Available operations with cloud servers and flavors | In the Account access area:
|
In the access area Project:
|
compute.flavor.viewer
User with access to view cloud server flavors. Does not have access to other products.
| Access areas |
|
|---|---|
| Who can be prescribed |
|
| Available operations with cloud servers and flavors | In the Account access area:
|
In the access area Project:
|