Logical Domains Manager Profile Contents

The Logical Domains Manager package adds the following rights profiles to the local rights profile description database:

LDoms Consoles:::Access LDoms Consoles:auths=solaris.vntsd.consoles
LDoms Power Mgmt Observability:::View LDoms Power Consumption:auths=solaris.ldoms.ldmpower
LDoms Review:::Review LDoms configuration:profiles=LDoms Power Mgmt Observability;auths=solaris.ldoms.read
LDoms Management:::Manage LDoms domains:profiles=LDoms Power Mgmt Observability;auths=solaris.ldoms.*

The Logical Domains Manager package also adds the following execution attribute that is associated with the LDoms Management profile and the LDoms Power Mgmt Observability profile to the local execution profiles database:

LDoms Management:suser:cmd:::/usr/sbin/ldm:privs=file_dac_read,file_dac_search
LDoms Power Mgmt Observability:suser:cmd:::/usr/sbin/ldmpower:privs=file_dac_search

The following table lists the ldm subcommands with the corresponding user authorization that is needed to perform the commands.

Table 2-1 ldm Subcommands and User Authorizations

ldm Subcommand(1) User Authorization

add-*

solaris.ldoms.write

bind-domain

solaris.ldoms.write

list

solaris.ldoms.read

list-*

solaris.ldoms.read

panic-domain

solaris.ldoms.write

remove-*

solaris.ldoms.write

set-*

solaris.ldoms.write

start-domain

solaris.ldoms.write

stop-domain

solaris.ldoms.write

unbind-domain

solaris.ldoms.write

Footnote 1 Refers to all the resources you can add, list, remove, or set.