vRealize Automation roles and permissions#
To implement the separation of customer and Rackspace duties in vRealize Automation, Rackspace implements vRealize Automation roles.
Rackspace retains the system administrator role, whilst the customer is the private cloud administrator and primary tenant. The customer can delegate responsibilities as required, including assigning tenant administrator roles to users as they see fit.
As holder of the System Administrator role, Rackspace is required to create additional tenants, assign additional IaaS administrators if requested by the customer, and also monitor system level logs.
All other roles are assigned to the customer, as detailed below:
- IaaS Administrator
- Tenant Administrator
- Fabric Administrator
- Application Architect
- Infrastructure Architect
- Software Architect
- XaaS Architect
- Catalog Administrator
- Approval Administrator
- Business Group Manager
- Support User
- Business User
The following table lists the permissions that are associated with each role.
||See the following rows for Application, Infrastructure, Software, and XaaS Architects.|
|Application Architect||Tenant Administrators can assign this role to users in their tenant at any time from the Administration tab.||Assemble and manage composite blueprints.|
|Infrastructure Architect||Tenant Administrators can assign this role to users in their tenant at any time from the Administration tab.||
||Create and manage approval policies.|
||Approve service catalog requests, including provisioning requests or any resource actions.|
|Business Group Manager||