Database admin role-based access control configuration

The Database admin (DBA) role is applicable for any database that IBM® Storage Defender Copy Data Management supports. The role manages the database resource and runs Backup and Restore jobs on these database resources. The DBA also has permissions to configure work flow templates to allow other IBM Storage Defender Copy Data Management users to run Backup and Restore jobs by using database resources without having direct access to them.

Resource pool configuration

Table 1. Resource pool configuration

Resource pool configuration Steps
Providers Tab
  1. Set up the Providers to include the root level for all database resources and the storage resources. If database server is virtual, include the VMware resource.
  2. Select a specific SMTP server, if applicable.
Jobs Tab
  1. Select the root level of all database-related jobs.
  2. Select the root All SLA Policies.
  3. Select the root All Schedules.
Applications Tab
  • Select the root level of all the database resources.
Reports Tab
  • No Reports resources are assigned to this role.
Identities Tab
  • Select all the keys or credentials for the database resources.
Access Control Tab
  • No Security Resources are assigned to this role.
Screens Tab
  • Select all available Screens and exclude Configure, Marketplace, and Logs. The DBA should not be able to configure the providers. The logs contain audit logs that the user should not have access.
Finish Tab
  1. Provide a name for the resource pool.
  2. Submit the Resource Pool.

Role Configuration

  1. Select the permissions required for each resource.
  2. Provide a name to the role and click Finish to save the role.

Database Admin Account Configuration

Create a new account and link it to the newly created DBA Resource Pool and Role.