Safeguarded Copy function user roles
Safeguarded Copy function user roles explains exclusively all the responsibilities and roles that are given to the Safeguarded Copy function users.
The following section explains all the responsibilities and roles that are given to the
Safeguarded Copy function users.
- System administrator
-
The system administrator can do the following actions on the Safeguarded Copy function objects:
- Create a Safeguarded backup location.
- Create a Safeguarded Policy with a backup and retention schedule.
- Create a Safeguarded volume group.
- Associate a Safeguarded policy to a volume group.
- Assign volumes to the Safeguarded volume group.
- Delete a Safeguarded source volume.
- Delete a Safeguarded volume group.
- Change a Safeguarded volume group policy.
- Associated with Safeguarded sources.
The system administrator cannot do the following actions on the Safeguarded Copy function objects:- An administrator cannot delete Safeguarded backups or mappings between backups and the source.
- An administrator cannot delete a Safeguarded backup location that contains Safeguarded backup copies.
- External scheduling applications
-
External scheduler user can do the following actions on the Safeguarded Copy function objects:
- Adjust and follow the CLI commands restrictions that are implemented on Safeguarded objects.
- Create Safeguarded backup volume in the Safeguarded backup location for each Safeguarded source volume.
- Reschedule the backup if the Safeguarded policy is changed with the associated volume group.
- Create a FlashCopy mapping between the Safeguarded source and the target volume in the Safeguarded backup location.
- Create or reuse an empty FlashCopy consistency group.
- Add the FlashCopy mappings to the FlashCopy consistency group.
- Remove the FlashCopy mappings from the FlashCopy consistency group.
- Delete or save the FlashCopy consistency group for later reuse.
External scheduler user cannot do the following actions on the Safeguarded Copy function objects:- A user cannot create the Safeguarded backup location in a parent pool.
- A user cannot create a volume group.
- A user cannot create a Safeguarded policy.
- A user cannot associate a Safeguarded policy to a volume group.
- A user cannot delete a Safeguarded source volume.
- A user cannot change a Safeguarded policy.
- A user cannot add or remove volumes in a Safeguarded volume group.
- Security administrator
-
The security administrator can do the following actions on the Safeguarded Copy function objects:
- Delete Safeguarded backups directly outside of the Safeguarded policy retention schedule if necessary.
- Delete Safeguarded policy and retention schedule.
- Delete Safeguarded volume group and Safeguarded source volumes.