* Re: [PVE-User] Restricting users to only interacting with their own created VMs?
[not found] ` <mailman.152.1639808865.300.pve-user@lists.proxmox.com>
@ 2021-12-18 10:40 ` harrim4n
0 siblings, 0 replies; only message in thread
From: harrim4n @ 2021-12-18 10:40 UTC (permalink / raw)
To: Proxmox VE user list
Hi,
the only "built-in" way that I know of is to use resource pools.
Basically you create a resource pool for each user and they only have
access to create VMs in that pool. All other users don't have access to
that pool, so they can't access the VMs.
You could probably also figure out a way to automatically manage the
permissions via the API, i.e., detect which user cloned a VM via the
clone task, then automatically remove access for that specific VM ID for
all other users (or set the default so that no one has access
permissions and only grant them for that specific user). Although I'm
not sure of the top of my head if the permissions can be set up so that
users can clone a VM/template to create a new one without requiring
access to it.
On 18.12.21 07:27, Victor Hooi via pve-user wrote:
> Hi,
>
> We have a test environment setup with various shared templates (e.g.
> Windows 7, Windows 8.1, Windows 10) etc.
>
> We have a number of users who login, clone those templates, and do their
> own testing on their own VMs.
>
> What's the easiest way to restrict users to only interacting with VMs
> created by themselves?
>
> Thanks!
> _______________________________________________
> pve-user mailing list
> pve-user@lists.proxmox.com
> https://lists.proxmox.com/cgi-bin/mailman/listinfo/pve-user
^ permalink raw reply [flat|nested] only message in thread
only message in thread, other threads:[~2021-12-18 10:41 UTC | newest]
Thread overview: (only message) (download: mbox.gz / follow: Atom feed)
-- links below jump to the message on this page --
[not found] <CAMnnoU+X9VgSx-1C07EEr7z6sxgi9ej3-wcjcrix6crUJ7_-=Q.ref@mail.gmail.com>
[not found] ` <mailman.152.1639808865.300.pve-user@lists.proxmox.com>
2021-12-18 10:40 ` [PVE-User] Restricting users to only interacting with their own created VMs? harrim4n
This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox