Setting Up a Permission Group Configuration Job
  • 19 Dec 2023
  • 2 Minutes to read
  • Contributors
  • PDF

Setting Up a Permission Group Configuration Job

  • PDF

Article summary

From Skylight orchestrator, you can configure users on devices. Those users will belong to a user group that has a particular set of permissions. The Permission groups configuration job allows to define the permissions for user groups on devices. You may choose to give a user group the permissions to perform certain tasks such as updating firmware, configuring or OAM. You can also define user groups that have full access to all features.


Note: You must define permission groups before defining user accounts.

To set up a Permission groups job

  1. Access the page Commission ▶ Jobs.

  2. Set all common configuration job settings, as described in "Creating Configuration Jobs in GUI Mode" and in "Creating Configuration Jobs Using Data Sets".

  3. Select Permission groups in the left pane. The Permission groups tab is displayed.
    Setting Up a Permission Group Configuration Job_1.PNG

  4. Complete all fields of the Permission groups tab as required. For more information on specific parameters, see the table below.

  5. Use the Add PLUS BUTTON.png button or Duplicate DUPLICATE BUTTON.png button to add Permission groups settings as required.


Note: When duplicating a row, always select the row to duplicate before clicking the Duplicate DUPLICATE BUTTON.png button.

  1. Click Apply, then click Close.

  2. Click the Refresh REFRESH BUTTON.png button to refresh the user interface.

Permission groups tab (Commission ▶ Jobs)
Permission group general

ParameterDescription
Group nameThe name of the user permission group.
All-addPermission to add in all sections that are viewable.
All-editPermission to edit in all sections that are viewable.
All-enablePermission to enable in all sections that are viewable.

OAM

ParameterDescription
Link-OAMAdd/Edit/Enable OAM and loopback (Ethernet OAM links).
PAAAdd/Edit/Enable Performance Assurance Agent instances.
CFMAdd/Edit the SOAM CFM feature.
TWAMPEdit/Enable TWAMP settings.
Service AvailabilityAdd/Edit/Enable service availability instances.

SAT

ParameterDescription
RFC-2544Add/Edit/Enable entities related to RFC-2544 testing.
Y.1564Add/Edit/Enable entities related to Y.1564 testing.
SAT-ReportingEdit/Enable entities related to Service Activation Testing reporting.
SAT-ProtocolAdd/Edit/Enable entitites related to the Service Activation Testing protocol.

Traffic

ParameterDescription
FiltersAdd/Edit Layer-2 filters, IPv4 filters, IPv6 filters and VLAN filters and vid-sets.
FlowAdd/Edit flows.
FlowmeterEdit/Show flowmeter information.
Flow brokerEdit/Show flow broker information.
L2PTAdd/Edit Layer 2 protocol tunneling rules.
PoliciesAdd/Edit/Enable policies for filtering traffic.
PortAdd/Edit/Enable port configurations:
  • cable-test
  • media-selection
  • port
  • statistics
  • fault-propagation
ShapingAdd/Edit traffic shaper database.
TrafficEdit/Enable VLAN encapsulation settings:
  • forwarding
ProtectionAdd/Edit/Enable protection related to:
  • LACP
  • ERP

System

ParameterDescription
ACLEdit/Enable ACL settings.
AlarmsEdit/Add/Enable alarm reporting configurations.
ConfigImport/Export configuration files through CLI.
FirmwareUpgrade the firmware.
HistoryEdit the history bucket statistics.
LogEdit syslog configuration and view logged entries.
ManagementEdit/Add management access to the unit:
  • bridge
  • console
  • dns
  • interface
  • mode admin
  • motd
  • mtr
  • ntp
  • ptp
  • route
  • sfp
  • snmp
  • snmp-trap
Service MappingAdd/Edit CoS profiles and bandwidth regulator sets:
  • bandwidth-regulator
  • cos-profile
  • regulator-set
SessionsManage sessions and edit session configuration:
  • RADIUS
  • TACACS+
  • reboot
  • session
UsersEdit/Add and manage user accounts and permissions:
  • permission-group
  • user

© 2024 Cisco and/or its affiliates. All rights reserved.
 
For more information about trademarks, please visit: Cisco trademarks
For more information about legal terms, please visit: Cisco legal terms

For legal information about Accedian Skylight products, please visit: Accedian legal terms and tradmarks



Was this article helpful?

Changing your password will log you out immediately. Use the new password to log back in.
First name must have atleast 2 characters. Numbers and special characters are not allowed.
Last name must have atleast 1 characters. Numbers and special characters are not allowed.
Enter a valid email
Enter a valid password
Your profile has been successfully updated.