Forum Discussion

Mariusz_B's avatar
Mariusz_B
Icon for Nimbostratus rankNimbostratus
Mar 24, 2015

Custom user role.

Hello,

 

I have operators who sometimes need to manually enable some nodes, but they can't sync the config. This was raised in the past: https://devcentral.f5.com/questions/operator-user-role-in-active-passive-ltm but I can't find any new references / examples. Does anyone have any experience with setting up custom rule? I need Operator permissions with syncing the config capabilities.

 

Regards Mariusz

 

3 Replies

  • It seems no progress have been made yet on the BIGIP software in this aspect. The RFE referenced in the other thread is still not implemented. Maybe as a workaround, some script with iControl may be implemented for those operators?

     

  • Right now, the only true RBAC with BigIP is to use Big-IQ or some other custom iControl based application. I've been told it won't initially exist in 12.0 either.

     

  • Thank you for your updates. We are not going to go for BIG-IQ for now, so I'll find some another workaround. I was thinking to use Crontab on some Linux server, to synchronize the config every X number of hours on LTMs.

     

    Many thanks