Hi All,
Please help, had trying to resolve this all day, but failed.
My Customer need certain user that belong to Active Directory able to manage SRM, like configure mapping, create protection group, run Test Scenario from Recovery Plan. This role defined as " SRM Test Administrator - Test Only"
And also they need a user that only can be used as SRM administrator, just same like previous role, plus can execute recovery (either planned/disaster recovery). This Role defined as "SRM Administrator" <- Default SRM Role (none has been changed)
From the attahed image, all users except the blue retangle should be "SRM Test Administrator - Test Only". But when I assign the black retangle to that role, " SRM Test Administrator -Test Only" suddenly they become "Read Only" ?
Except the red rectangle..note: I am using his account for changing/modify this role.
All of them were administrator (registered as local Administrator in Windows/ vCenter Server) and Administrator in the vCenter (with propagate to child).
I had also add all those users in SRM server local Administrator Group.
I cannot change the "Read only" to SRM Test Administrator - Test only" or else. (error message appear in the attached file)
Also I cannot new user to the SRM permission tab.
The strange part, All those read only user, able to run Test Recovery Plan ??
and...
In Roles, there is no user registed as "Read Only"
Just like "ghost" user I think...:D
note:
vCenter is 5.0 U 1 (Windows 2008 R2) (DB: SQL STD)
SRM is 5.0 U1 (Windows 2008 R2) (DB: SQL STD)
ESXi is 5.0 U1
vCEnter and SRM Server had joined the domain, all users is Active Directory users
Any advice on this..?
Thanks
addendum:
here is the SRM Test Administrator - Test Only
=================================================================================
==================================================================================
SRM Test Administrator
==================================================================================
WARNING: column "Server" does not fit into the display and was removed.
Name Description
---- -----------
Anonymous The only privilege held by sessions whic...
View Visibility without read access to an ent...
Read Grants read access to an entity
Protect Protect datastore
Stop Stop protection of a datastore
Recovery use Allow SRM to use resource
Export Export diagnostic data
Modify Modify inventory mappings
Modify Modify advanced settings
Configure Configure placeholder datastores
Assign to plan Assign to a recovery plan
Create Create a protection group
Remove Remove a protection group
Modify Modify a protection group
Remove from plan Remove from a recovery plan
View Deleted Plans View deleted plan history
Configure commands Configure commands to run during recovery
Create Create recovery plan
Remove Remove recovery plan
Modify Modify recovery plan
Recovery Run recovery plan
Reprotect Reprotect
Test Test recovery plan
Modify Modify remote site
Configure Configure the SAN array manager
Protect Protect virtual machine
Stop Stop protection of a virtual machine