|Manage Users and Groups / Access Tasks|
This use case details tasks for creating an administrator. These tasks require that you have your account credentials for sending requests to Eucalyptus using the command line interface (CLI) tools.
To create an administrator account, perform the tasks that follows.
Eucalyptus recommends using account credentials as little as possible. You can avoid using account credentials by creating a group of users with administrative privileges.
euare-groupcreate -g administrators
Eucalyptus returns a listing of the groups that have been created, as in the following example.
Add a policy to the administrators group that allows its members to perform all actions in Eucalyptus.
euare-groupaddpolicy -p admin-root -g administrators -e Allow -a "*" -r "*" -o
Create a user for day-to-day administrative work and add that user to the administrators group.
euare-usercreate -wd DOMAIN USER >~/.euca/FILE.ini
euare-usercreate -wd DNS_DOMAIN alice >~/.euca/alice.ini
This creates a user admin file with a region name that matches that of your cloud's DNS domain.
euare-groupadduser -u alice administrators