Skip to main content

Manage access to cloud server network volumes and snapshots

Access to cloud server network volumes and snapshots is governed by a role-based access control model that defines access within an account and project. Read more in the Access Control in Servercore Products manual.

member

A user with full access to all services. Does not have access to manage: users, service users, user groups, and federations.

Access scopes
  • account;
  • project
Who can be assigned
  • users;
  • service users;
  • user groups
Available operations with cloud server network volumes and snapshots

In the Account access scope:

  • view a list of all network volumes and information about them: disk type, disk size, connected backup plans, created snapshots;
  • view general disk statistics;
  • create disks:
  • manage disks;
  • manage connected backup plans;
  • view a list of all snapshots: snapshot size, creation date, and status;
  • create and manage disk snapshots

In the Project access scope:

  • view a list of all network volumes and information about them: disk type, disk size, connected backup plans, created snapshots;
  • view general disk statistics;
  • create disks;
  • manage disks;
  • manage connected backup plans;
  • view a list of all snapshots: snapshot size, creation date, and status;
  • create and manage disk snapshots

reader

User with access to view everything managed by member in the same access scope.

Access scopes
  • account;
  • project
Who can be assigned
  • users;
  • service users;
  • user groups
Available operations with cloud server network volumes and snapshots

In the Account access scope:

  • view a list of all network volumes and information about them in account projects: disk type, disk size, connected backup plans, created snapshots;
  • view general disk statistics;
  • view a list of all snapshots: snapshot size, creation date, and status

In the Project access scope:

  • view a list of all network volumes and information about them in your project: disk type, disk size, connected backup plans, created snapshots;
  • view general disk statistics;
  • view a list of all snapshots: snapshot size, creation date, and status

billing

User with access to billing management and no access to service management.

Access scopesAccount
Who can be assigned
  • users;
  • service users;
  • user groups
Available operations with cloud server network volumes and snapshots
  • billing management

iam.admin

A user with access to manage users and no access to services and billing. Cannot manage their account: modify permissions, manage notifications, delete the user. The first user with the iam.admin role is created by the Account Owner.

Access scopesAccount
Who can be assigned
  • users;
  • service users;
  • user groups
Available operations with cloud server network volumes and snapshots

iam.viewer

User with access to view everything managed by iam.admin.

Access scopesAccount
Who can be assigned
  • users;
  • service users;
  • user groups
Available operations with cloud server network volumes and snapshots

compute.volume.admin

A user with access to manage cloud server network volumes. Does not have access to other products.

Access scopes
  • account;
  • project
Who can be assigned
  • users;
  • service users;
  • user groups
Available operations with cloud server network volumes

In the Account access scope:

  • view a list of all network volumes and information about them: disk type, disk size;
  • create disks;
  • manage disks;
  • move disks between projects;
  • view disk migration information

In the Project access scope:

  • view a list of all network volumes and information about them: disk type, disk size;
  • create disks;
  • manage disks;
  • move disks between projects;
  • view disk migration information

compute.volume.user

A user with access to manage cloud server network volumes. Does not have access to other products in their project or to network volumes in other projects.

Access scopes
  • account;
  • project
Who can be assigned
  • users;
  • service users;
  • user groups
Available operations with cloud server network volumes

In the Account access scope:

  • view a list of all network volumes and information about them: disk type, disk size;
  • create disks;
  • manage disks

In the Project access scope:

  • view a list of all network volumes and information about them: disk type, disk size;
  • create disks;
  • manage disks

compute.volume.viewer

A user with access to view network volumes. Does not have access to other products.

Access scopes
  • account;
  • project
Who can be assigned
  • users;
  • service users;
  • user groups
Available operations with cloud server network volumes

In the Account access scope:

  • view a list of all network volumes and information about them: disk type, disk size

In the Project access scope:

  • view a list of all network volumes and information about them: disk type, disk size

compute.snapshot.admin

A user with access to manage network volume snapshots. Does not have access to other products.

Access scopes
  • account;
  • project
Who can be assigned
  • users;
  • service users;
  • user groups
Available operations with snapshots

In the Account access scope:

  • view a list of all snapshots: snapshot size, creation date, and status;
  • create snapshots;
  • manage snapshots

In the Project access scope:

  • view a list of all snapshots: snapshot size, creation date, and status;
  • create snapshots;
  • manage snapshots

compute.snapshot.viewer

A user with access to view network volume snapshots. Does not have access to other products.

Access scopes
  • account;
  • project
Who can be assigned
  • users;
  • service users;
  • user groups
Available operations with snapshots

In the Account access scope:

  • view a list of all snapshots: snapshot size, creation date, and status

In the Project access scope:

  • view a list of all snapshots: snapshot size, creation date, and status