Problem
To improve security and stability of an environment, an account with minimal privileges should be used to integrate CloudBolt with other systems.
Account Configuration
In order to successfully provision IP addresses or create DNS records (A, PTR, IP Reservation and Host records). The following permissions are required:
Allow Access
The following properties must be set on the Infoblox Group containing the service account:
Administration > Administrators > Permissions > Select specific Group > Edit > General:
This can be any option provided the Named ACL or Set of ACEs allow access from the subnet vRO is on.
Administration > Administrators > Permissions > Select specific Group > Edit > Roles:
Permissions:
Administration > Administrators > Permissions > Select specific Group > Click + > Global Permissions > Permission Type: IPAM permissions:
Resource/Function | Read/Write | Read-Only |
---|---|---|
All Network Views | X | |
All Hosts | X |
Administration > Administrators > Permissions > Select specific Group > Click + > Global Permissions > Permission Type: DHCP permissions:
Resource/Function | Read/Write | Read-Only |
---|---|---|
All Network Views | X | |
All Hosts | X | |
All IPv4 DHCP Fixed Addresses/Reservations | X |
Administration > Administrators > Permissions > Select specific Group > Click + > Global Permissions > Permission Type: DNS permissions:
Resource/Function | Read/Write | Read-Only |
---|---|---|
All DNS Views | X | |
All Hosts | X | |
All A Records | X | |
All PTR Records | X |
Note for Microsoft DHCP Ranges Only (complete the following)
Administration > Administrators > Permissions > Select specific Group > Click + > Global Permissions > Permission Type: Grid Permissions:
Resource/Function | Read/Write | Read-Only |
---|---|---|
All Microsoft Servers | X |
Additional information
TBD
0 Comments