my question is about the permissions within a proxmox cluster. We have 8 nodes in our cluster and want to make some of them available for other users via the resource pools. So I created users, added these users to a group and allowed this group to access the pool.
Hi guys, yesterday I installed my first Proxmox VE on my tiny pc.
I want to add a new user with administrative privileges. (I'm following this YT tutorial : https://www.youtube.com/watch?v=MtuhWjEo9qs)
So far, this is what I've done:
create user marco on the OS
create user marco on Proxmox...
I've added accidentally an PAM-user over the GUI, realized after I created the user, that I've should have selected the PVE Realm.
Here is my Problem:
I cannot delete the (freshly) created PAM-user.
When using the Remove-Button in the GUI:
delete user failed: user '***@pam' not found...
I'm trying to configure role for view-only guest accounts that need access to view VMs configuration and console, but should not be able to change anything nor input something to console.
I've created role with VM.Audit, VM.Console and VM.Monitor privileges, which kind of does the trick...
I am currently trying to implement LDAP Sync for our Proxmox cluster.
Basically it's working fine, the only thing I don't get to sync are the user to group associations when a user is in a nested group.
This is the relevant content of my domains.cfg:
I am trying to achieve some permissions for 2 specific hosts in the cluster.
We want to have some usergroup that can administer (create,delete,configure) vms on just 2 hosts.
I am thinking of some combination of permissions on /node/<node> /storage and /vms .
But as a result I am...
Habe einen Proxmox-Server aufgesetzt, welcher als Host für ein Testsystem dient.
Auf das Testsystem sollen Mitarbeiter der Abteilung HLT zugreifen.
Habe also eine Gruppe "HLT" angelegt und diesen entsprechende Rechte zugewiesen.
Wenn ich jetzt einen Benutzer anlege (Linux PAM standard...
For traceability reasons, I would like to retrieve the security events of the the creation, modification and deletion of users. The same goes for firewall rules.
Do you know if it is possible to make the logs more verbose on these two points?
I have started user management with this guide.
However, I'm facing this issue:
No other user except for System administrator (=root) can resize virtual disks of any VM.
Can you please advise which role must be assigned to a user to grant this permission?
I want to create a new User with the only Permission to view the VM shell.
I created a few roles with different permissions like :
Nothing seems to work.
Has anyone the correct string / solution?
I have configured LDAP authentication; there are no issues means I can login with user + password after creating the user accounts in GUI.
Can I assign a user to multiple PVE groups?
If yes, how?
And how do I check to which PVE groups a user is assigned to?
Hallo @all !
als Umsteiger von eFa zu Proxmox kommen natürlich jetzt die ersten kleinen Problemchen. Ich hoffe, mir kann geholfen werden.
Nach erfolgreicher Installation und Konfiguration ist Proxmox jetzt seit 4 Tagen im scharfen Einsatz und filtert fleißig Mails.
Jetzt wollte ich neben root...
I am trying to set up LDAP authentication on my Proxmox cluster but it is only working on one host, not the other. I am running freeIPA as my LDAP server and everything appears to be working with that, both LDAP and LDAPS are working. My config:
On one host everything works fine...
That's the second time I tried Proxmox. In the first time, some years ago, I remember that I quite not understood well what I was doing or what the Proxmox (PM) purpose was. Now I do.
Well, after installing PM, some containers, a VM (OpenMediaVault) and had struggling for more than 5 hours...
I am currently trying to solve the problem of allowing or denying certain users from logging into the Proxmox console from a specific IP. I want to allow certain user users to login to Proxmox from a particular IP but not allow the root user to login from that IP. This is due to my remote access...