Skip to main content

Roles and permissions

DonkeyFleet recognizes three realm roles.

Capabilityreadapproveadminister
View Home, Inventory, Capacity, AuditYesYesYes
View policies and infrastructureYesYesYes
Mark notifications readYesYesYes
Approve, reject, or move eligible work to backlogNoYesYes
Bind an adopted relationship to a profileNoYesYes
Register or archive infrastructureNoNoYes
Create or change policyNoNoYes
Change runtime safety controlsNoNoYes
Reset local development dataNoNoYes, when deployment unlocks it

Assign only the lowest role needed. A person who approves deletion should not share accounts, and the identity provider should preserve stable subjects for audit.

ONTAP permissions

Use separate credentials or roles for source and destination clusters:

  • source-role credentials need observation access only;
  • destination-role credentials need observation plus the specific volume and SnapMirror operations DonkeyFleet manages.

The precise minimum ONTAP RBAC command set is not yet published as a stable product contract. Validate permissions in dry-run and a non-production destination before rollout.