vmware-nsx/etc/policy.d/routers.json
Gary Kotton 48680a054f Enable admin or owner to configure snat
Change-Id: I9e1fe4669c7792063e33b7c87807d0acda681da8
2017-07-16 23:29:53 -07:00

21 lines
848 B
JSON

{
"create_router:distributed": "rule:admin_or_owner",
"get_router:distributed": "rule:admin_or_owner",
"update_router:distributed": "rule:admin_or_owner",
"get_router:ha": "rule:admin_only",
"create_router": "rule:regular_user",
"create_router:external_gateway_info:enable_snat": "rule:admin_or_owner",
"create_router:ha": "rule:admin_only",
"get_router": "rule:admin_or_owner",
"update_router:external_gateway_info:enable_snat": "rule:admin_or_owner",
"update_router:ha": "rule:admin_only",
"delete_router": "rule:admin_or_owner",
"add_router_interface": "rule:admin_or_owner",
"remove_router_interface": "rule:admin_or_owner",
"create_router:external_gateway_info:external_fixed_ips": "rule:admin_only",
"update_router:external_gateway_info:external_fixed_ips": "rule:admin_only",
}