HP Matrix Operating Environment 7.3 Update 1 Installation and Configuration Guide for Provisioning with Virtual Resources

System Setup
System Utilities
7. Select All Managed Systems and CMS in the Select Systems field.
8. Click OK.
NOTE: You might see the following: You can safely ignore this and continue.
User management overview
Matrix infrastructure orchestration is integrated with Microsoft Active Directory, a system that
enables the management of identities, relationships, and security levels for systems, users and
application settings in a network.
This integration allows Windows Users Groups, as well as individual local users, to be given access
to resources. When infrastructure orchestration is installed, three local User Groups
(HPIO_Administrators, HPIO_Architects and HPIO_Users) are created.
The CMS administrator populates the service provider roles by adding local Windows users and
Active Directory users or groups to HPIO_Administrators, HPIO_Architects and HPIO_Users. When
an organization is created, two local Windows groups are created with descriptions indicating
the organization’s name. These local groups have names of the form
<organization_id>_Administrators and <organization_id>_Users (see “Configuring
multi-tenancy (optional)” (page 121)).
A group of users (for example, an Active Directory group) can be authorized to view and perform
lifecycle operations in the same way that users are authorized. A user in a group is authorized
based on the group's assignment to an HPIO role.
NOTE: You can view and assign only directly named users and groups that are included in the
HPIO Windows groups. Users or subgroups within these named groups are not visible, nor can
they be directly assigned to resources.
At the service provider level, there are three classes of Matrix infrastructure orchestration users.
These classes are represented as CMS-local Windows user groups. These groups are:
HPIO_Users can log on to Matrix infrastructure orchestration Self-Service Portal
(https://<cms-name-or-ip>:51443/hpio/portal), and initiate requests for
provisioning using published templates. These requests require approval from
an Administrator.
HPIO_Architects have the privileges of the HPIO_Users group, and can access the Matrix
infrastructure orchestration Designer
(https://<cms-name-or-ip>:51443/hpio/designer) to create, modify, and
publish templates.
HPIO_Administrators have the privileges of the HPIO_Architects group, and can access Matrix
infrastructure orchestration console through the HP SIM, initiate requests without
requiring approval, modify infrastructure orchestration configuration items,
configure networks and pools, grant users access to existing resources, and
approve, reject, continue, or cancel requests. Can also access infrastructure
52 Configuring the CMS