|Manage Access / Access Tasks|
This use case details tasks for creating an administrator. These tasks require that you have your account credentials for sending requests to Eucalyptus using the command line interface (CLI) tools.
To create an administrator account, perform the tasks that follows.
Eucalyptus recommends using account credentials as little as possible. You can avoid using account credentials by creating a group of users with administrative privileges.
euare-groupcreate -g administrators
Eucalyptus returns a listing of the groups that have been created, as in the following example.
Add a policy to the administrators group that allows its members to perform all actions in Eucalyptus.
euare-groupaddpolicy -p admin-root -g administrators -e Allow -a "*" -r "*" -o
Create a user for day-to-day administrative work and add that user to the administrators group.
euare-usercreate -u alice
euare-groupadduser -g administrators -u alice
To start running commands as the new administrative user, you must create an access key for that user.
euare-useraddkey -u alice
Eucalyptus returns the access key ID and the user's secret key.
export EC2_ACCESS_KEY='WOKSEQRNM1LVIR702XVX1' export EC2_SECRET_KEY='0SmLCQ8DAZPKoaC7oJYcRMfeDUgGbiSVv1ip5WaH'