FAQ: Role-Based Access Control (RBAC)
What is the cost to opt in to RBAC?
RBAC is a free feature that is available to selected open cloud services with an API.
Can a customer opt out of RBAC?
Customers can opt out by simply removing the account users.
Is RBAC available internationally?
Yes, RBAC is available to all Rackspace customers.
Can I configure custom role assignments when I add a user login to an existing contact?
Yes, you can. See Managing: Role-Based Access Control (RBAC) for instructions.
How do I query the capability of a given user?
You can query the roles for a given user by using the List User Global Roles API operation described in the Cloud Identity Client Developer Guide. Additionally, you can view the roles that a user has through http://MyCloud.rackspace.com.
Can I view multiple accounts in the New Cloud Control Panel?
You may view only one account at a time in the New Cloud Control Panel.
Can users other than the account owner view the server tags?
At this time, only the account owner can view the tags. Account owners can rename servers at any time to help alleviate any confusion. To change a server name, click the actions cog next to the server name and select Rename Server.
Can Rackspace display per-billing or per-user usage?
Per-billing and per-user usage are not offered at this time.
Which users can create support tickets?
All users can create support tickets; however, only the account owner is updated on the ticket status.
Will I be able to delegate all functionality as an account owner?
Not at this time, but we are working on developing and delivering that functionality.
Does RBAC provide fine-grained access control for specific servers, directories, or files?
RBAC is limited to granting a user control over a given product. It is not granular enough to restrict access to individual servers, files, or directories.
Does the API offer more features for RBAC than the New Cloud Control Panel offers?
Yes, at this time more features are available through the API. For more information about using the API for RBAC see the Rackspace API Documentation.
Will account users automatically inherit the RackConnect and Managed Cloud features?
How does RBAC work with MyRackspace?
With the implementation of RBAC, account owners can leave permissions as they are in MyRackspace or set up restricted access to specific products for users through the New Cloud Control Panel. For more detailed information see Using RBAC with MyRackspace.
Is there a way to link dedicated, hybrid, and cloud permissions?
These permissions cannot be linked at this time. Having a common permission scheme between dedicated, hybrid, and cloud customers will be addressed in the future.
Are servers/containers/files/databases/load-balancers shared, or do users have their own set of resources?
All resources for an account are shared across users that have the correct roles. In other words, account users do not have their own set of resources but share a pool of resources that other users of the account may have access to.
Where can I view the pop-up window that appeared when I initially enabled RBAC?
This is the initial pop-up window that appears when you enable RBAC.
For information about additional products that will be RBAC enabled in the future, see RBAC Overview.
For information about changing your admin credentials, see Managing RBAC.
For access to the Cloud Control Panel, see the Rackspace Cloud Control Panel.
© 2011-2013 Rackspace US, Inc.
Except where otherwise noted, content on this site is licensed under a Creative Commons Attribution-NonCommercial-NoDerivs 3.0 Unported License
See license specifics and DISCLAIMER