SnapCenter Plug-in for VMware vSphere 5
ONTAP privileges required
The minimum ONTAP privileges that are required vary according to the SnapCenter plug-ins you are using for data protection.
Minimum ONTAP privileges required
All SnapCenter plug-ins require the following minimum privileges.
All-access commands: Minimum privileges required for ONTAP 9.7 and later |
---|
event generate-autosupport-log |
job history show |
lun |
snapmirror list-destinations |
Version |
volume clone create |
vserver cifs |
Read-only Commands: Minimum Privileges Required for ONTAP 9.7 and Later |
---|
vserver |
You can ignore the warning messages about the unsupported vserver commands. |
Additional ONTAP information
-
If you are running ONTAP 9.7 and later:
You must login as
vsadmin
or with a role that has the minimum privileges listed in the tables above. -
You need to be the cluster admin to create and manage user roles. You can associate the users either with Cluster storage VM or with storage VM.
-
You need ONTAP 9.12.1 or later versions to use SnapMirror active sync feature.
-
To use TamperProof Snapshot (TPS) feature:
-
You need ONTAP 9.13.1 and later versions for SAN
-
You need ONTAP 9.12.1 and later versions for NFS
-
Beginning with ONTAP version 9.11.1, the communication to ONTAP cluster is through REST APIs. The ONTAP user should have http application enabled. However, if there are issues found with ONTAP REST APIs, the configuration key 'FORCE_ZAPI' helps the switchover to traditional ZAPI workflow. You may need to add or update this key using the config APIS and set it to true. |