03-10-2011 08:49 AM
Hello,
I have configured nexus 1010 with version (4.0(4)SP1(1)) in HA mode.
I have configured a vsm with following versions:
boot kickstart bootflash:/nexus-1000v-kickstart-mz.4.0.4.SV1.3b.bin sup-1
boot system bootflash:/nexus-1000v-mz.4.0.4.SV1.3b.bin sup-1
boot kickstart bootflash:/nexus-1000v-kickstart-mz.4.0.4.SV1.3b.bin sup-2
boot system bootflash:/nexus-1000v-mz.4.0.4.SV1.3b.bin sup-2
03-10-2011 11:41 AM
Roles require you to turn on the feature.
Run "show feature" on the VSM cli. Roles will probably be disabled.
n1000v-AV# show feature
Feature Name Instance State
-------------------- -------- --------
dhcp-snooping 1 enabled
http-server 1 enabled
lacp 1 enabled
netflow 1 enabled
port-profile-roles 1 disabled
private-vlan 1 enabled
sshServer 1 enabled
tacacs 1 disabled
telnetServer 1 enabled
n1000v-AV# config t
Enter configuration commands, one per line. End with CNTL/Z.
n1000v-AV(config)# feature port-profile-roles ?
<CR>
n1000v-AV(config)# feature port-profile-roles
That will enable roles
louis
03-11-2011 10:03 AM
thanks a lot, it works.
One more question, when defining roles in Nexus, Can the permissions in the vCenter Override the ones in Nexus?
thanks.
03-15-2011 12:09 AM
What do you mean by override the ones in Nexus? Are you saying changing the privileges in the role defined on the VC? Or do you mean adding permissions to portgroups on the VC?
Thanks,
Sean
03-15-2011 05:42 AM
Well, I would like to set permissions on Nexus that the SysAdmin cannot change on the VC. How would this be possible?
O
03-15-2011 03:08 PM
Any user on the vCenter that is allowed to edit roles globally and change permissions for the N1K objects (i.e. DVS and portgroups) will be able to make changes at the vCenter. There is not a way to prevent the vCenter users from making these changes today. It is up to the vCenter administrator to properly set privileges so that only authorized users can make these changes.
Thanks,
Sean
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide