public inbox for pve-user@lists.proxmox.com
 help / color / mirror / Atom feed
* Re: [PVE-User] Restricting users to only interacting with their own created VMs?
       [not found] ` <mailman.152.1639808865.300.pve-user@lists.proxmox.com>
@ 2021-12-18 10:40   ` harrim4n
  0 siblings, 0 replies; only message in thread
From: harrim4n @ 2021-12-18 10:40 UTC (permalink / raw)
  To: Proxmox VE user list

Hi,

the only "built-in" way that I know of is to use resource pools. 
Basically you create a resource pool for each user and they only have 
access to create VMs in that pool. All other users don't have access to 
that pool, so they can't access the VMs.
You could probably also figure out a way to automatically manage the 
permissions via the API, i.e., detect which user cloned a VM via the 
clone task, then automatically remove access for that specific VM ID for 
all other users (or set the default so that no one has access 
permissions and only grant them for that specific user). Although I'm 
not sure of the top of my head if the permissions can be set up so that 
users can clone a VM/template to create a new one without requiring 
access to it.

On 18.12.21 07:27, Victor Hooi via pve-user wrote:

> Hi,
>
> We have a test environment setup with various shared templates (e.g.
> Windows 7, Windows 8.1, Windows 10) etc.
>
> We have a number of users who login, clone those templates, and do their
> own testing on their own VMs.
>
> What's the easiest way to restrict users to only interacting with VMs
> created by themselves?
>
> Thanks!
> _______________________________________________
> pve-user mailing list
> pve-user@lists.proxmox.com
> https://lists.proxmox.com/cgi-bin/mailman/listinfo/pve-user





^ permalink raw reply	[flat|nested] only message in thread

only message in thread, other threads:[~2021-12-18 10:41 UTC | newest]

Thread overview: (only message) (download: mbox.gz / follow: Atom feed)
-- links below jump to the message on this page --
     [not found] <CAMnnoU+X9VgSx-1C07EEr7z6sxgi9ej3-wcjcrix6crUJ7_-=Q.ref@mail.gmail.com>
     [not found] ` <mailman.152.1639808865.300.pve-user@lists.proxmox.com>
2021-12-18 10:40   ` [PVE-User] Restricting users to only interacting with their own created VMs? harrim4n

This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox
Service provided by Proxmox Server Solutions GmbH | Privacy | Legal