Configuring Command Policies for Delegated Administrators
-
Read-only allows read-only access to show all commands except for the system command group and
ns.conf showcommands. -
Operator allows read-only access and also allows access to enable and disable commands on services. This policy also allows access to set services and servers as "access down.”
-
Network permits almost complete system access, excluding system commands and the shell command.
-
Superuser grants full system privileges, such as the privileges granted to the default administrator,
nsroot.
To create an administrative user on NetScaler Gateway
-
In the configuration utility, in the navigation pane, on the Configuration tab, expand System > User Administration and then click System Users.
-
In the details pane, click Add.
-
In User Name, type a user name.
-
In the Password and Confirm Password fields, type the password.
-
To add users to a group, in Member of, click Add.
-
In Available, select a group and then click the right arrow.
-
Click Command Policies > Action > Insert.
-
In the Insert Command Policies dialog box, select the command, click OK > Create > Close.
Creating Administrative Groups
To configure an administrative group by using the configuration utility
-
In the configuration utility, in the navigation pane, on the Configuration tab, expand System > User Administration and then click System Groups.
-
In the details pane, click Add.
-
In Group Name, type a name for the group.
-
To add an existing user to the group, in Members, click Add.
-
Under Available, select a user and then click the right arrow.
-
Under Command Policies, in Action, click Insert, select a policy or policies, click OK, click Create and then click Close.