Bug 889519

Summary: [RFE] Offer only meaningful roles for an object & document roles relations to object
Product: [oVirt] ovirt-engine Reporter: Jiri Belka <jbelka>
Component: RFEsAssignee: Nobody's working on this, feel free to take it <nobody>
Status: CLOSED WONTFIX QA Contact:
Severity: low Docs Contact:
Priority: unspecified    
Version: ---CC: bsettle, bugs, iheim, lpeer, oourfali, rbalakri, Rhev-m-bugs, yeylon
Target Milestone: ---Keywords: FutureFeature, Improvement
Target Release: ---Flags: ylavi: ovirt-future?
rule-engine: planning_ack?
rule-engine: devel_ack?
rule-engine: testing_ack?
Hardware: Unspecified   
OS: Unspecified   
Whiteboard: infra
Fixed In Version: Doc Type: Enhancement
Doc Text:
Story Points: ---
Clone Of: Environment:
Last Closed: 2015-12-01 12:20:43 UTC Type: Bug
Regression: --- Mount Type: ---
Documentation: --- CRM:
Verified Versions: Category: ---
oVirt Team: Infra RHEL 7.3 requirements from Atomic Host:
Cloudforms Team: --- Target Upstream Version:
Embargoed:

Description Jiri Belka 2012-12-21 15:08:51 UTC
Description of problem:

While adding a role to a VM I can add roles such as 'SuperUser', 'StorageAdmin'... It doesn't make sense at all on this object.

From docs:

"StorageAdmin -	Storage Administrator -	Can create, delete, configure and manage a specific storage domain."

So 'StorageAdmin' is useless here (on VM), it should be filtered not to even try to confuse an administrator in Admin Portal. If the administrator believes he can choose from offered list a meaningful role, he is then confused it is not working as he expected. He can found explaination of such a role in documentation but it would be nice to have one single place where all roles and their relations to objects are documented (not spread around all documentation). Competitors provide easy readable documentation of roles. (Example for ESXI 5.0 - http://goo.gl/GCS8E)

Version-Release number of selected component (if applicable):
si25.2

How reproducible:
100%

Steps to Reproduce:
1. Try to add a role to a VM
2. Do you see 'SuperAdmin', 'StorageAdmin' ?
  
Actual results:
Meaningful roles in the role list for an object.
Roles explanation spread all over the documentation.

Expected results:
Filter roles in to those which are logically only related to an object.
One single place of documentation of roles and their respective objects relations.

Additional info: