Technical Documentation

Understanding How to Configure Users to Manage Objects in Junos Space

Junos Space is shipped with a super administrator that has full access to the Junos Space system. When you first log on to Junos Space with the default super administrator, you can perform all tasks and access all Junos Space system resources. The super administrator can create new users and assign roles to those users to specify which workspaces and system resources users can access and manage, and which tasks users can perform within each workspace.

After you first setup Junos Space, you can disable the super administrator, if necessary. However, before disabling the default super administrator, you should first create another user with super administrator privileges.

To access and manage Junos Space system resources, a user must be assigned at least one role. A role defines the tasks (create, modify, delete) that can be performed on the objects (devices, users, roles, services, customers) that Junos Space manages. For complete information on the predefined roles, see Predefined Administrator Roles.

Users receive permission to perform tasks only through the roles that they are assigned. In most cases, a single role assignment enables a user to view and perform tasks on the objects within a workspace. For example, a user assigned the Device Manager role can discover devices, resynchronize devices, view the physical inventory and interfaces for devices, and delete managed devices. A user that is assigned the user administrator role can create, modify, and delete other users in Junos Space, and assign and remove roles.

Typically a role contains one or more task groups. A task group provides a mechanism for grouping a set of related tasks that can be performed on a specific object. The following illustration shows the task group and associated tasks that are available to a user that is assigned the User Administrator role.


Image s600228.gif

Note: You can assign multiple roles to a single user, and multiple users can be assigned the same role.


Published: 2010-03-18