<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: cannot create rest role access system manager in ONTAP Discussions</title>
    <link>https://community.netapp.com/t5/ONTAP-Discussions/cannot-create-rest-role-access-system-manager/m-p/435168#M40617</link>
    <description>&lt;P&gt;Try looking at the role first. Note this is the role and not the rest-role. They play together&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;security login role show -vserver cmode9101 -role operation_team&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;you may need to add a role&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;&amp;nbsp;security login role add -vserver cmode9101 -role operation_team -cmddir “anti-ransomware volume” -access readonly&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;&amp;nbsp;of course set the access as needed. Then try adding your rest-role again&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Fri, 20 May 2022 11:33:30 GMT</pubDate>
    <dc:creator>TMACMD</dc:creator>
    <dc:date>2022-05-20T11:33:30Z</dc:date>
    <item>
      <title>cannot create rest role access system manager</title>
      <link>https://community.netapp.com/t5/ONTAP-Discussions/cannot-create-rest-role-access-system-manager/m-p/435165#M40616</link>
      <description>&lt;P&gt;Hi All,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;We try create 9.10.1 RBAC access OnTap System Manage for operation as below.&lt;/P&gt;&lt;P&gt;- domain user with operation_team role as below cannot login System manager&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="chinchillaking_0-1653038049857.png" style="width: 400px;"&gt;&lt;img src="https://community.netapp.com/t5/image/serverpage/image-id/23561i004122A458B3CD00/image-size/medium?v=v2&amp;amp;px=400" role="button" title="chinchillaking_0-1653038049857.png" alt="chinchillaking_0-1653038049857.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;- when domain user change to default readonly role, login System Manage no problem&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="chinchillaking_1-1653038096689.png" style="width: 400px;"&gt;&lt;img src="https://community.netapp.com/t5/image/serverpage/image-id/23562iEC8AEF92EAC7A461/image-size/medium?v=v2&amp;amp;px=400" role="button" title="chinchillaking_1-1653038096689.png" alt="chinchillaking_1-1653038096689.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;- the operation_team missing /api/security compare with default readonly role, we try add /api/security but failed and display "Error: command failed: failed to set field "cmddirname" to "anti-ransomware volume""&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="chinchillaking_2-1653038139032.png" style="width: 400px;"&gt;&lt;img src="https://community.netapp.com/t5/image/serverpage/image-id/23563i0A75BD077B9D7DD0/image-size/medium?v=v2&amp;amp;px=400" role="button" title="chinchillaking_2-1653038139032.png" alt="chinchillaking_2-1653038139032.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;- volume did not setup anti-ransomware&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="chinchillaking_3-1653038180404.png" style="width: 400px;"&gt;&lt;img src="https://community.netapp.com/t5/image/serverpage/image-id/23564i379DDD88824D3FE5/image-size/medium?v=v2&amp;amp;px=400" role="button" title="chinchillaking_3-1653038180404.png" alt="chinchillaking_3-1653038180404.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I cannot found solution in google or mysupport.netapp.com&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 04 Jun 2025 10:00:59 GMT</pubDate>
      <guid>https://community.netapp.com/t5/ONTAP-Discussions/cannot-create-rest-role-access-system-manager/m-p/435165#M40616</guid>
      <dc:creator>chinchillaking</dc:creator>
      <dc:date>2025-06-04T10:00:59Z</dc:date>
    </item>
    <item>
      <title>Re: cannot create rest role access system manager</title>
      <link>https://community.netapp.com/t5/ONTAP-Discussions/cannot-create-rest-role-access-system-manager/m-p/435168#M40617</link>
      <description>&lt;P&gt;Try looking at the role first. Note this is the role and not the rest-role. They play together&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;security login role show -vserver cmode9101 -role operation_team&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;you may need to add a role&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;&amp;nbsp;security login role add -vserver cmode9101 -role operation_team -cmddir “anti-ransomware volume” -access readonly&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;&amp;nbsp;of course set the access as needed. Then try adding your rest-role again&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 20 May 2022 11:33:30 GMT</pubDate>
      <guid>https://community.netapp.com/t5/ONTAP-Discussions/cannot-create-rest-role-access-system-manager/m-p/435168#M40617</guid>
      <dc:creator>TMACMD</dc:creator>
      <dc:date>2022-05-20T11:33:30Z</dc:date>
    </item>
    <item>
      <title>Re: cannot create rest role access system manager</title>
      <link>https://community.netapp.com/t5/ONTAP-Discussions/cannot-create-rest-role-access-system-manager/m-p/435184#M40620</link>
      <description>&lt;P&gt;Hi TMACMD,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks for your reply. But the role cannot add&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="chinchillaking_0-1653101860704.png" style="width: 400px;"&gt;&lt;img src="https://community.netapp.com/t5/image/serverpage/image-id/23566iEF496665977494FF/image-size/medium?v=v2&amp;amp;px=400" role="button" title="chinchillaking_0-1653101860704.png" alt="chinchillaking_0-1653101860704.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="chinchillaking_1-1653101891379.png" style="width: 400px;"&gt;&lt;img src="https://community.netapp.com/t5/image/serverpage/image-id/23567i8D27BF77A71F3C96/image-size/medium?v=v2&amp;amp;px=400" role="button" title="chinchillaking_1-1653101891379.png" alt="chinchillaking_1-1653101891379.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;But I found it was not&amp;nbsp;&lt;SPAN&gt;/api/security compare with default readonly role issue, it was web services access issue, after add&amp;nbsp;security and&amp;nbsp;sysmgr in web access, login successful&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="chinchillaking_2-1653102082017.png" style="width: 400px;"&gt;&lt;img src="https://community.netapp.com/t5/image/serverpage/image-id/23568iB71936EBF1D490B7/image-size/medium?v=v2&amp;amp;px=400" role="button" title="chinchillaking_2-1653102082017.png" alt="chinchillaking_2-1653102082017.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Sat, 21 May 2022 03:02:36 GMT</pubDate>
      <guid>https://community.netapp.com/t5/ONTAP-Discussions/cannot-create-rest-role-access-system-manager/m-p/435184#M40620</guid>
      <dc:creator>chinchillaking</dc:creator>
      <dc:date>2022-05-21T03:02:36Z</dc:date>
    </item>
  </channel>
</rss>

