Information
Space banner This version of the product has reached end of support. The documentation is available for your convenience. However, you must be logged in to access it. You will not be able to leave comments.

Static Objects


This tab enables defining which of all existing database object types and objects an administrator is to be able to access and in which way. Be aware, that to access an individual object the administrator must be assigned at least read access to the respective top node. For example, the administrator must have at least view access to the Reports top node, to access a specific report.

By default this tab will always contain one entry, the respective administrator himself. When an administrator is created he will automatically be added here to provide him with the possibility to check his access rights. The default access defined at creation time is Read Access access allowed, any other access denied.

Parameter

Description

Name

Displays the name of the object for which the right is assigned, for example, Hardware Inventory Report or All Devices for a query.

Object Type

This column displays the object type of the selected object, such as Query or Report .

Via Administrator Group

This field shows if the access right to the object is directly assigned to the administrator or if it is inherited through a group membership. The field is empty if it is directly assigned or it will contain the name of the group or groups from which the administrator inherits.

Read Access

Contains Allow , for yes , grant write access or Deny , for no , do not grant it. In this case the administrator will not be able to see this object in his console nor any of its children.

Write Access

Contains Allow , for yes , grant write access or Deny , for no , do not grant it. The administrator must have read access granted on the respective object to be able to be assigned write access.

Assign Access

Contains Allow , for yes , grant write access or Deny , for no , do not grant it. This type of access is only of importance for objects that also have an Assign Access capability. In these cases the Assign Access capability for this object type is a prerequisite. If it is not assigned this access right is ignored. The database objects concerned by this are operational rules, packages and transfer windows.

Direct Access Acknowledgement

This access type defines if system credentials are required when trying to access a device remotely via the Direct Access functionality. Possible values are:

  • Required , for yes , system credentials must be provided to access,
  • Not Required , for no , no credentials are required with the specification on when they are not required, for an absent user or a closed session or both,
  • Inherit , if the access definition is defined through the group membership, or
  • Deny , if the access to a specific device of a group, such as for example the master is to be refused, even though the administrator is able to access all other group members. The default access is Required . This type of access is only applicable to devices.

Remote Control Acknowledgement

This access type defines if system credentials are required when trying to access a device remotely via the Remote Control functionality. Possible values are:

  • Required , for yes , system credentials must be provided to access,
  • Not Required , for no , no credentials are required with the specification on when they are not required, for an absent user or a closed session or both,
  • Inherit , if the access definition is defined through the group membership, or
  • Deny , if the access to a specific device of a group, such as for example the master is to be refused, even though the administrator is able to access all other group members. The default access is Required . This type of access is only applicable to devices.

Real User Rights

This field shows if the administrator is accessing the local files and Windows Registry of a device with the access rights a system account or only those of the local account. It displays Yes , to limit to local account access, for complete system access this field remains empty. This parameter is only applicable to devices.

 

Tip: For faster searching, add an asterisk to the end of your partial query. Example: cert*

BMC Client Management 12.1