Active IQ Unified Manager Discussions

Restrict "Domain Admins" in Operations Manager




our Netapp filers are integrated in our AD domain and also DFM is installed on a MemberServer of this Domain. With this setup the members of Domain Admins has full access to the Operations Manager (DFM) regardless of the RBAC settings 😞  RBAC is working fine for not Domain Admins, Windows domain admins are not netapp experts, and therewith they shouldn't have full access.


Is there any solution to restict Domain Admins?









We have same issue. Due the DFM installed on a server whish is member of a domain the all domain users have full access rights to DFM.

Need to restrict acess.

There is everyone without roles, how can we remove the everyone account from DFM?


Eduard Abrahamyan

by default Windows Administrators group members are super-users in DFM.

Is it possible to change it to other group or restrict the rights level for buildin\Administrators group.

I have tried to get this looked at, contacting different partner resources but no joy

My post was made here

Would be great to get this changed so rather than the local administrators group being used (which has Domain Admins nested within it) you could simply just pick a specific AD group.

Come on NetApp!!

NetApp on Discord Image

We're on Discord, are you?

Live Chat, Watch Parties, and More!

Explore Banner

Meet Explore, NetApp’s digital sales platform

Engage digitally throughout the sales process, from product discovery to configuration, and handle all your post-purchase needs.