メインコンテンツへスキップ

Azure 上の Cloud Volumes ONTAP でアグリゲートへのディスク追加が権限エラーで失敗する

Views:
1
Visibility:
Public
Votes:
0
Category:
netapp_console
Specialty:
ds_cvo
Last Updated:

環境

  • Cloud Volumes ONTAP
  • ONTAP 9

問題

Azure 上の Cloud Volumes ONTAP (CVO)デプロイメントでアグリゲートにディスクを追加しようとすると、NetApp Console で次のエラーが発生して失敗します:

「この操作を実行する権限がありません。詳細については、OnCommand NetApp Consoleのポリシーに関するドキュメントを参照してください。」

コネクタのログに「Linked Authorization Failed」エラーが表示される場合があります。環境によってはカスタムの Azure IAM ロールが使用される場合があり、CVO VM には別のサブスクリプションの Shared Image Gallery (SIG)から VM アプリケーションがアタッチされている場合があります。

原因

NetApp Connector VMのシステム割り当てマネージドIDには、別のサブスクリプションにあるAzure Compute GalleryからVMアプリケーションを読み取るための十分なAzure RBAC権限がありませんでした。これにより、必要なVMアプリケーションが存在する場合に、CVOデプロイメントがディスクを追加できませんでした。

解決策

  • VMアプリケーションを含む共有イメージギャラリー(SIG)リソースグループ上の NetApp コネクタのシステム割り当てマネージドIDに、閲覧者ロールを付与してください。
  • カスタムIAMロールを使用する場合は、そのロールにMicrosoft.Compute/galleries/*/read権限が含まれていることを確認してください。
  • 該当する場合は、共有イメージギャラリーのサブスクリプションをカスタムIAMロールの割り当て可能なスコープに追加してください。
  • コネクタVMを再起動して、認証情報とアクセス許可のキャッシュを更新してください。
  • NetApp Console でディスク追加操作を再試行してください。ディスクの作成はこれで成功するはずです。

パートナーノート

partnerNotes_text

追加情報

追加情報

内部情報

内部情報

Sign in to view the entire content of this KB article.

New to NetApp?

Learn more about our award-winning Support

NetApp provides no representations or warranties regarding the accuracy or reliability or serviceability of any information or recommendations provided in this publication or with respect to any results that may be obtained by the use of the information or observance of any recommendations provided herein. The information in this document is distributed AS IS and the use of this information or the implementation of any recommendations or techniques herein is a customer's responsibility and depends on the customer's ability to evaluate and integrate them into the customer's operational environment. This document and the information contained herein may be used solely in connection with the NetApp products discussed in this document.