Go to main content

Oracle® VM Server for SPARC 3.6 Administration Guide

Exit Print View

Updated: September 2019
 
 

How to Control Access to a Single Console by Using Rights Profiles

  1. Restrict access to a domain console by enabling console authorization checking.
    primary# svccfg -s vntsd setprop vntsd/authorization = true
    primary# svcadm refresh vntsd
    primary# svcadm restart vntsd
  2. Add an authorization for a single domain to the authorization description database.

    The following command adds the solaris.vntsd.console-domain:::Access domain Console:: authorization entry for a domain console:

    # auths add -t "Access domain-name Console" solaris.vntsd.console-domain-name
  3. Create a rights profile with an authorization to access a specific domain console.

    Use the profiles command to create a new profile.

    primary# profiles -p "domain Console" \
    'set desc="Access domain Console";
    set auths=solaris.vntsd.console-domain'
  4. Assign the rights profile.
    primary# usermod -P +"domain Console" username