The delegation of IPAM administration is similar to the delegation of DNS. When IPAM is installed and provisioned, new security groups become available to administratorsto configure role-based administration within your IPAM infrastructure. The five new security groups for IPAM administration are as follows:IPAM Administrators Members of this group have full permissions to manage and administer an IPAM infrastructure.IPAM IP Audit Administrators Members of this group can perform common IPAM management tasks and can carry out IPAM audits.IPAM ASM Administrators Members of this group can perform tasks related to IP address space management (ASM) functionality.IPAM MSM Administrator Members of this group can perform tasks across multiple IPAM servers through the IPAM multiserver management (MSM) functionality.IPAM Users Members of this group can only view information about server discovery, ASM, and MSM in IPAM. They can also view operational events, but they have no access to tracking or auditing information.In addition to these new security groups, IPAM comes with a new Access Control feature, which allows administrators to get even more granular with IPAM permissions by using up to eight different preconfigured roles. You can also create your own custom IPAM administration roles for full IPAM permissions flexibility within your environment.Figure 20.5 illustrates the new Access Control panel for IPAM delegation of administration. Take the time to add and remove users from each of these groups and roles to get used to IPAM permission sets.
đang được dịch, vui lòng đợi..
