/
Configuring a User

Configuring a User

You can use the admin user or create a separate user for the Infoblox integration. If you have a Cloud Network Automation license, a cloud-api-only group is created automatically. You can create a user in this group. Otherwise, you must create a group specifically for this integration.

In any scenario, the user or group must have the following minimum set of permissions for full DDI functionality to work with Infoblox IPAM Driver for OpenStack Neutron:

Permission TypeResourceResource TypePermission
[DNS]All A recordsA recordRW
[DNS]All AAAA recordsAAAA recordRW
[DNS, DHCP, IPAM]All hostsHostRW
[DNS, DHCP, IPAM]All IPv4 host addressesIPv4 host addressRW
[DNS, DHCP, IPAM]All IPv6 host addressesIPv6 host addressRW
[DHCP, IPAM]All IPv6 networksIPv6 networkRW
[GRID]All membersMemberRW
[DHCP, IPAM]All IPv4 networksIPv4 networkRW
[DHCP, IPAM]All network viewsNetwork viewRW
[DNS]All PTR recordsPTR recordRW
[DHCP]All IPv4 rangesIPv4 rangeRW
[CLOUD]All tenantsTenantRW
[DNS]All DNS viewsDNS viewRW
[DNS]All zonesZoneRW

If you are testing the IPAM only case, which does not require Infoblox to serve DHCP and DNS, the minimum set of required permissions are as follows:

Permission TypeResourceResource TypePermissionComment
[GRID]All membersMemberRW

This can be set RO if Report Grid Sync Time is set to False.

[CLOUD]All tenantsTenantRW
[DHCP, IPAM]All network viewsNetwork viewRW
[DHCP, IPAM]All IPv4 networksIPv4 networkRW
[DHCP, IPAM]All IPv6 networksIPv6 networkRW



Related content