Previous Topic: user put_newobj_acl (User Management) Replace New Object ACL Definition for a UserNext Topic: unlock (User Management)--Removes the Temporary Login Lockout for User


user modify_newobj_acl (User Management) Modify New Object ACL for a User

Replace that portion of a new object ACL definition associated to a user which relates to the owner or a principal entry.

Syntax:
user modify_newobj_acl <name> [ <principal>=owner ] [ <principal1>=<val> ... <principalN>=<val> ] [ template=<principal> ] [ --test_only ]
Parameters:
<name>

Name of the user; prepend the user name with / to indicate a global user.

<principal>=owner

Set the owner attribute of the new object ACL definition to the specified principal. The principal must be a group or the referenced user.

<principal>=<val>

Add the specified principal to the new object ACL definition with access level <val>. <principal> is in the following form:

<name>

Local user or group.

/<name>

Global user or group.

<scope>:<type>:<name>

A fully qualified principal name where <scope> is 'global' or 'local', <type> is 'group' or 'user', and <name> is the group or user name. Valid access levels are: read, control, configure and full.

template=<principal>

Replace the principal entries of the new object ACL definition with those of the new object ACL definition associated to the specified principal.

--test_only

Do not replace the new object ACL definition but rather test if the operation can succeed.

Example:
user modify_newobj_acl user1 local:group:admin=full

Modify the new object ACL definition associated to the local user 'user1'.

Note:

The owner of a new object ACL definition associated to a user must be that user or a group.