Viewing an ACL summary


The ACL Summary view displays the current set of authorizations that are defined for an object. It can also show effective authorizations by considering permissions assigned to both objects and roles. Use the following procedures to display or filter the ACL Summary view:

Approaches for granting authorizations to objects

Users sometimes find it difficult to know what authorizations are granted to an object at any given time. There are various mechanisms for assigning authorizations. Administrators can grant authorizations to both roles and objects. When granting authorizations to objects, administrators can use the following approaches:

  • Granting authorizations directly to an object.
  • Granting authorizations in ACL policies that are assigned to the object.
  • Granting authorizations to the object through maintenance windows.

The ACL Summary view

To make viewing access control lists (ACLs) easier, you can use the ACL Summary view. It lets you see authorizations using two types of views:

  • ACL Summary — A summary of all authorizations granted to an object. This view does not reflect role-based authorizations. If an object-based authorization has been granted to a role to perform an action on this object, that authorization appears in the ACL Summary view whether or not a role-based authorization has also been granted to the object.
  • Effective Permissions — A list of effective authorizations for the object. This view takes into account the combination of role- and object-based authorizations to show the roles and actions that can actually be performed on the object.

See Authorization-overview for a more detailed explanation of the differences between role- and object-based authorizations.

The ACL Summary view lets you filter the authorization information displayed. For more information about the filters available on this view, see ACL-Summary-view-filters.

The ACL Summary view displays authorizations for an object. If the authorizations for that object change while the ACL Summary view is open, the authorizations in the summary view are not automatically updated. You can click Refresh g_v95_refresh.gifto update the view with the latest authorizations assigned to the object. This requirement applies when viewing both ACL summaries and effective permissions.

To display an ACL Summary view

  1. Select an object, right-click and select ACL Summary View.
    A view opens, showing all authorizations defined for the selected object.
  2. To see the combination of role- and object-based authorizations, use the drop-down list to select Effective Permissions.
    The view shows a list of authorizations that take into account the combination of all object- and role-based permissions.
    To switch back to a list of object-based permissions, select ACL Summary from the drop-down list.

To filter information about the ACL Summary view

Using the filters available for every column in the ACL Summary view, you can restrict the permission information that this view displays.

  1. Display the ACL Summary view.
  2. Click the filtering information at the top of a column header.
  3. Select a filtering option from the drop-down list.
  4. Click the filter icon g_v95_filter.gif.
    The view updates to show information that matches the filtering criteria you have selected.

To reset all filters

  1. Click Reset All Filters g_v95_filter_clear_e.gif.

 

Tip: For faster searching, add an asterisk to the end of your partial query. Example: cert*