Is there a way to prevent Roles Assigned to Groups on Objects to only apply to 
where it is set?


Basically looking for a way to do what we had done in VMWare which involved 
using the do not propagate permission setting.


be able 
Seems to me that right now there is no way to set this so if i give access to 
something at the top level of a DC those accesses wlll overide if i then 
explcitly set another role and permission on an object underneath


Lets take as a concrete example the ovirtmgmt network.   I do not want users in 
the engine to be able to place VMs on this (but i want the Superusers to be 
able to still) How can i accomplish this with the way roles and permissions 
work with Ovirt?


thanks!
Brian
_______________________________________________
Users mailing list -- users@ovirt.org
To unsubscribe send an email to users-le...@ovirt.org
Privacy Statement: https://www.ovirt.org/site/privacy-policy/
oVirt Code of Conduct: 
https://www.ovirt.org/community/about/community-guidelines/
List Archives: 
https://lists.ovirt.org/archives/list/users@ovirt.org/message/PY6ZITVTLFNXFXN7PQ6TO46UMTVOGB23/

Reply via email to