Hello All,
I have a task per a 3rd party vendor to give read-only access to a user and create a set of roles. Now some of these roles when you apply say a few things. Some say "command failed: invalid operation", others say "command failed: a Vserver admin cannot use command directory "cluster" with access level "readonly" use different access level".
The concern is the only options really for -access are none, readonly and ALL.
If I can't grant these roles with readonly then what other option do I have?
I'm running 9.14.1 of ONTAP.
security login role create -role whole -vserver SXY -access none -cmddirname DEFAULT security login role create -role whole -vserver SXY -access readonly -cmddirname "vserver show" security login role create -role whole -vserver SXY -access readonly -cmddirname "cluster show" security login role create -role whole -vserver SXY -access readonly -cmddirname "volume show" security login role create -role whole -vserver SXY -access readonly -cmddirname "cluster identity show" security login role create -role whole -vserver SXY -access readonly -cmddirname "network interface show" security login role create -role whole -vserver SXY -access readonly -cmddirname "system license show" security login role create -role whole -vserver SXY -access readonly -cmddirname "storage aggregate show" security login role create -role whole -vserver SXY -access readonly -cmddirname "version" security login role create -role whole -vserver SXY -access readonly -cmddirname "system node show" security login role create -role whole -vserver SXY -access readonly -cmddirname "volume qtree show" security login role create -role whole -vserver SXY -access readonly -cmddirname "system node autosupport show” security login role create -role whole -vserver SXY -access readonly -cmddirname "security login role show-ontapi"